cbcvebase.
CVE-2023-54311
published 2025-12-30

CVE-2023-54311: In the Linux kernel, the following vulnerability has been resolved: ext4: fix deadlock when converting an inline directory in nojournal mode In no journal…

PriorityP419medium6.2
EPSS
0.18%
7.2th percentile
In the Linux kernel, the following vulnerability has been resolved: ext4: fix deadlock when converting an inline directory in nojournal mode In no journal mode, ext4_finish_convert_inline_dir() can self-deadlock by calling ext4_handle_dirty_dirblock() when it already has taken the directory lock. There is a similar self-deadlock in ext4_incvert_inline_data_nolock() for data files which we'll fix at the same time. A simple reproducer demonstrating the problem: mke2fs -Fq -t ext2 -O inline_data -b 4k /dev/vdc 64 mount -t ext4 -o dirsync /dev/vdc /vdc cd /vdc mkdir file0 cd file0 touch file0 touch file1 attr -s BurnSpaceInEA -V abcde . touch supercalifragilisticexpialidocious

Affected

19 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.37-1 (bookworm)linux 6.1.37-1 (bookworm)
linuxlinux
linuxlinux>= 3c47d54170b6a678875566b1b8d6dcf57904e49b < b4fa4768c9acff77245d672d855d2c88294850b1b4fa4768c9acff77245d672d855d2c88294850b1
linuxlinux>= 3c47d54170b6a678875566b1b8d6dcf57904e49b < 5f8b55136ad787aed2c184f7cb3e93772ae637a35f8b55136ad787aed2c184f7cb3e93772ae637a3
linuxlinux>= 3c47d54170b6a678875566b1b8d6dcf57904e49b < 640c8c365999c6f23447ac766437236ad88317c5640c8c365999c6f23447ac766437236ad88317c5
linuxlinux>= 3c47d54170b6a678875566b1b8d6dcf57904e49b < 665cc3ba50330049524c1d275bc840a8f28dde73665cc3ba50330049524c1d275bc840a8f28dde73
linuxlinux>= 3c47d54170b6a678875566b1b8d6dcf57904e49b < 0b1c4357bb21d9770451a1bdb8d419ea10bada880b1c4357bb21d9770451a1bdb8d419ea10bada88
linuxlinux>= 3c47d54170b6a678875566b1b8d6dcf57904e49b < 804de0c72cd473e186ca4e1f6287d45431b14e5a804de0c72cd473e186ca4e1f6287d45431b14e5a
linuxlinux>= 3c47d54170b6a678875566b1b8d6dcf57904e49b < f4ce24f54d9cca4f09a395f3eecce20d6bec4663f4ce24f54d9cca4f09a395f3eecce20d6bec4663
linuxlinux_kernel>= 0 < 5.10.191-15.10.191-1
linuxlinux_kernel>= 0 < 6.1.37-16.1.37-1
linuxlinux_kernel>= 0 < 6.3.7-16.3.7-1
linuxlinux_kernel>= 0 < 6.3.7-16.3.7-1
linuxlinux_kernel>= 3.8.0 < 5.4.2435.4.243
linuxlinux_kernel>= 5.11.0 < 5.15.1125.15.112
linuxlinux_kernel>= 5.16.0 < 6.1.296.1.29
linuxlinux_kernel>= 5.5.0 < 5.10.1805.10.180
linuxlinux_kernel>= 6.2.0 < 6.2.166.2.16
linuxlinux_kernel>= 6.3.0 < 6.3.36.3.3
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.