VulnerabilityDeferred
CVE-2023-53861
In the Linux kernel, the following vulnerability has been resolved: ext4: correct grp validation in ext4_mb_good_group Group corruption check will access memory of grp and will trigger kernel crash if grp is NULL.
UnscoredEPSS 0.23%
Does this matter?
Not yet scored. NVD analysis is pending; check back once CVSS and EPSS values are published.
Description
In the Linux kernel, the following vulnerability has been resolved: ext4: correct grp validation in ext4_mb_good_group Group corruption check will access memory of grp and will trigger kernel crash if grp is NULL. So do NULL check before corruption check.
- CVSS
- Not yet scored
- EPSS
- 0.23% probability · 14th percentile
- CISA KEV
- Not listed
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/245759d987b617d183061db6ab8886ebb5cc78e9
- https://git.kernel.org/stable/c/3e24082f16825279054a2b8a5e668d65070bbf07
- https://git.kernel.org/stable/c/772ca4bc1d0d21320ef2ecc0f9e4f90ea85a035d
- https://git.kernel.org/stable/c/83a9d5f5ec7e75640b1ba0bbd77a4888df798bb4
- https://git.kernel.org/stable/c/a9ce5993a0f5c0887c8a1b4ffa3b8046fbcfdc93
- https://git.kernel.org/stable/c/e69d665987db0e37896adf78a7e718f9a0a75d3f
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.