CVE-2023-53820 — Integer Overflow or Wraparound in Linux
Severity
6.7MEDIUM
No vectorEPSS
0.1%
top 80.33%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 9
Description
In the Linux kernel, the following vulnerability has been resolved:
loop: loop_set_status_from_info() check before assignment
In loop_set_status_from_info(), lo->lo_offset and lo->lo_sizelimit should
be checked before reassignment, because if an overflow error occurs, the
original correct value will be changed to the wrong value, and it will not
be changed back.
More, the original patch did not solve the problem, the value was set and
ioctl returned an error, but the subsequent io used the va…
Affected Packages4 packages
▶CVEListV5linux/linux2035c770bfdbcc82bd52e05871a7c82db9529e0f — 6bdf4e6dfb60cbb6121ccf027d97ed2ec97c0bcb+12
🔴Vulnerability Details
3GHSA▶
GHSA-3f7g-86g8-7vgv: In the Linux kernel, the following vulnerability has been resolved:
loop: loop_set_status_from_info() check before assignment
In loop_set_status_fro↗2025-12-09
OSV▶
CVE-2023-53820: In the Linux kernel, the following vulnerability has been resolved: loop: loop_set_status_from_info() check before assignment In loop_set_status_from_↗2025-12-09