cbcvebase.
CVE-2023-53861
published 2025-12-09

CVE-2023-53861: In the Linux kernel, the following vulnerability has been resolved: ext4: correct grp validation in ext4_mb_good_group Group corruption check will access…

PriorityP423medium4.7
EPSS
0.20%
10.6th percentile
In the Linux kernel, the following vulnerability has been resolved: ext4: correct grp validation in ext4_mb_good_group Group corruption check will access memory of grp and will trigger kernel crash if grp is NULL. So do NULL check before corruption check.

Affected

22 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.55-1 (bookworm)linux 6.1.55-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux>= 100c0ad6c04597fefeaaba2bb1827cc015d95067 < 245759d987b617d183061db6ab8886ebb5cc78e9245759d987b617d183061db6ab8886ebb5cc78e9
linuxlinux>= 5.10.181 < 5.10.1955.10.195
linuxlinux>= 5.15.113 < 5.15.1325.15.132
linuxlinux>= 5354b2af34064a4579be8bc0e2f15a7b70f14b5f < 83a9d5f5ec7e75640b1ba0bbd77a4888df798bb483a9d5f5ec7e75640b1ba0bbd77a4888df798bb4
linuxlinux>= 5354b2af34064a4579be8bc0e2f15a7b70f14b5f < e69d665987db0e37896adf78a7e718f9a0a75d3fe69d665987db0e37896adf78a7e718f9a0a75d3f
linuxlinux>= 5354b2af34064a4579be8bc0e2f15a7b70f14b5f < a9ce5993a0f5c0887c8a1b4ffa3b8046fbcfdc93a9ce5993a0f5c0887c8a1b4ffa3b8046fbcfdc93
linuxlinux>= 6.1.30 < 6.1.536.1.53
linuxlinux>= 6.3.4 < 6.46.4
linuxlinux>= 620a3c28221bb219b81bc0bffd065cc187494302 < 3e24082f16825279054a2b8a5e668d65070bbf073e24082f16825279054a2b8a5e668d65070bbf07
linuxlinux>= b4319e457d6e3fb33e443efeaf4634fc36e8a9ed < 772ca4bc1d0d21320ef2ecc0f9e4f90ea85a035d772ca4bc1d0d21320ef2ecc0f9e4f90ea85a035d
linuxlinux_kernel>= 0 < 5.10.197-15.10.197-1
linuxlinux_kernel>= 0 < 6.1.55-16.1.55-1
linuxlinux_kernel>= 0 < 6.5.3-16.5.3-1
linuxlinux_kernel>= 0 < 6.5.3-16.5.3-1
linuxlinux_kernel>= 0 < 5.10.1955.10.195
linuxlinux_kernel>= 5.11.0 < 5.15.1325.15.132
linuxlinux_kernel>= 5.16.0 < 6.1.536.1.53
linuxlinux_kernel>= 6.2.0 < 6.4.166.4.16
linuxlinux_kernel>= 6.4.0 < 6.5.36.5.3
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.