CVE-2023-53450

In the Linux kernel, the following vulnerability has been resolved: ext4: remove a BUG_ON in ext4_mb_release_group_pa() If a malicious fuzzer overwrites the ext4 superblock while it is mounted such that the s_first_data_block is set to a very large number, the calculation of the block group can underflow, and trigger a BUG_ON check. Change this to be an ext4_warning so that we don't crash the kernel.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.4:rc1:*:*:*:*:*:*

History

23 Jan 2026, 02:08

Type Values Removed Values Added
CWE CWE-617
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CPE cpe:2.3:o:linux:linux_kernel:6.4:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
First Time Linux
Linux linux Kernel
References () https://git.kernel.org/stable/c/185062a21976fbc38f2efd296951b02c4500cf65 - () https://git.kernel.org/stable/c/185062a21976fbc38f2efd296951b02c4500cf65 - Patch
References () https://git.kernel.org/stable/c/463808f237cf73e98a1a45ff7460c2406a150a0b - () https://git.kernel.org/stable/c/463808f237cf73e98a1a45ff7460c2406a150a0b - Patch
References () https://git.kernel.org/stable/c/53c14e7cc2257191ba15425c15638fc4f8abb92b - () https://git.kernel.org/stable/c/53c14e7cc2257191ba15425c15638fc4f8abb92b - Patch
References () https://git.kernel.org/stable/c/978e5e9111af18741449b81fefd531a622dd969a - () https://git.kernel.org/stable/c/978e5e9111af18741449b81fefd531a622dd969a - Patch
References () https://git.kernel.org/stable/c/b0fc279de4bf17e1710bb7e83906538ff8f11111 - () https://git.kernel.org/stable/c/b0fc279de4bf17e1710bb7e83906538ff8f11111 - Patch
References () https://git.kernel.org/stable/c/bf2a16eb4e6d06124bd8436d4546f61539a65f29 - () https://git.kernel.org/stable/c/bf2a16eb4e6d06124bd8436d4546f61539a65f29 - Patch
References () https://git.kernel.org/stable/c/d5bf8f7fb3ee3d99d1303ceb54599ea0599a4a5b - () https://git.kernel.org/stable/c/d5bf8f7fb3ee3d99d1303ceb54599ea0599a4a5b - Patch
References () https://git.kernel.org/stable/c/d87a4e4094c9879fc8acdff8ce59fdffa979c8e0 - () https://git.kernel.org/stable/c/d87a4e4094c9879fc8acdff8ce59fdffa979c8e0 - Patch
References () https://git.kernel.org/stable/c/ef16d8a1798db1a1604ac44ca1bd73ec6bebf483 - () https://git.kernel.org/stable/c/ef16d8a1798db1a1604ac44ca1bd73ec6bebf483 - Patch

01 Oct 2025, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-10-01 12:15

Updated : 2026-01-23 02:08


NVD link : CVE-2023-53450

Mitre link : CVE-2023-53450

CVE.ORG link : CVE-2023-53450


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-617

Reachable Assertion