CVE-2023-54305NULL Pointer Dereference in Linux

Severity
5.5MEDIUM
No vector
EPSS
0.0%
top 89.30%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 30

Description

In the Linux kernel, the following vulnerability has been resolved: ext4: refuse to create ea block when umounted The ea block expansion need to access s_root while it is already set as NULL when umount is triggered. Refuse this request to avoid panic.

Affected Packages4 packages

Linuxlinux/linux_kernel4.13.04.14.308+6
Debianlinux/linux_kernel< 5.10.178-1+3
CVEListV5linux/linuxe50e5129f384ae282adebfb561189cdb19b81ceeaedea161d031502a423ed1c7597754681a4f8cda+8
debiandebian/linux< linux 6.1.20-1 (bookworm)

🔴Vulnerability Details

3
OSV
CVE-2023-54305: In the Linux kernel, the following vulnerability has been resolved: ext4: refuse to create ea block when umounted The ea block expansion need to acces2025-12-30
GHSA
GHSA-xp6q-4ch5-xqhr: In the Linux kernel, the following vulnerability has been resolved: ext4: refuse to create ea block when umounted The ea block expansion need to acc2025-12-30
OSV
ext4: refuse to create ea block when umounted2025-12-30

📋Vendor Advisories

2
Red Hat
kernel: ext4: refuse to create ea block when umounted2025-12-30
Debian
CVE-2023-54305: linux - In the Linux kernel, the following vulnerability has been resolved: ext4: refus...2023

🕵️Threat Intelligence

1
Wiz
CVE-2023-54305 Impact, Exploitability, and Mitigation Steps | Wiz