cbcvebase.
CVE-2023-54185
published 2025-12-30

CVE-2023-54185: In the Linux kernel, the following vulnerability has been resolved: btrfs: remove BUG_ON()'s in add_new_free_space() At add_new_free_space() we have these…

PriorityP419low4.7
EPSS
0.17%
6.9th percentile
In the Linux kernel, the following vulnerability has been resolved: btrfs: remove BUG_ON()'s in add_new_free_space() At add_new_free_space() we have these BUG_ON()'s that are there to deal with any failure to add free space to the in memory free space cache. Such failures are mostly -ENOMEM that should be very rare. However there's no need to have these BUG_ON()'s, we can just return any error to the caller and all callers and their upper call chain are already dealing with errors. So just make add_new_free_space() return any errors, while removing the BUG_ON()'s, and returning the total amount of added free space to an optional u64 pointer argument.

Affected

10 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.52-1 (bookworm)linux 6.1.52-1 (bookworm)
linuxlinux
linuxlinux>= 0f9dd46cda36b8de3b9f48bc42bd09d20b9c3b52 < 23e72231f8281505883514b23709076e234d4f2723e72231f8281505883514b23709076e234d4f27
linuxlinux>= 0f9dd46cda36b8de3b9f48bc42bd09d20b9c3b52 < f775ceb0cb530e4a469b718fb2a24843071087f5f775ceb0cb530e4a469b718fb2a24843071087f5
linuxlinux>= 0f9dd46cda36b8de3b9f48bc42bd09d20b9c3b52 < d8ccbd21918fd7fa6ce3226cffc22c444228e8add8ccbd21918fd7fa6ce3226cffc22c444228e8ad
linuxlinux_kernel>= 0 < 6.1.52-16.1.52-1
linuxlinux_kernel>= 0 < 6.4.11-16.4.11-1
linuxlinux_kernel>= 0 < 6.4.11-16.4.11-1
linuxlinux_kernel>= 2.6.29 < 6.1.456.1.45
linuxlinux_kernel>= 6.2.0 < 6.4.106.4.10
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.