Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2023-53616

24
FAUCET Score

CVE-2023-53616 is a double-free vulnerability in the Linux kernel's JFS filesystem, specifically within the diUnmount function. This flaw occurs because the JFS_IP(ipimap)->i_imap pointer is not nulled after being freed, leading to a second free attempt if a subsequent remount operation fails. The vulnerability carries a CVSS score of 7.8 (High), indicating a local attack vector with low complexity that could lead to high impact on confidentiality, integrity, and availability. Currently, there is no evidence of active exploitation, and no public exploit code or significant community discussion has been identified.

Impacted Technologies

VendorProductVersion(s)CPE
>= 2.6.12.1, < 4.14.326CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.15, < 4.19.295CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 4.20, < 5.4.257CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.5, < 5.10.197CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.15.133CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.8HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.14%
Probability of exploitation in next 30 days
EPSS Percentile
4.0%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0014 is in the 18th percentile among its peer group of 17,070 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Advisories (1)

redhatCVE-2023-53616Moderate

kernel: jfs: fix invalid free of JFS_IP(ipimap)->i_imap in diUnmount

Oct 4, 2025

References

git.kernel.org / stable/c/114ea3cb13ab25f7178cb60283adb93d2f96dad7
Patch
git.kernel.org / stable/c/4de3a603010e0ca334487de24c6aab0777b7f808
Patch
git.kernel.org / stable/c/5873df0195124be2f357de11bfd473ead4f90ed8
Patch
git.kernel.org / stable/c/6e2bda2c192d0244b5a78b787ef20aa10cb319b7
Patch
git.kernel.org / stable/c/756747d4b439e3e1159282ae89f17eefebbe9b25
Patch
git.kernel.org / stable/c/88484bde6f12126616b38e43b6c00edcd941f615
Patch
git.kernel.org / stable/c/c3c0f0ddd851b3fa3e9d3450bbcd561f4f850469
Patch
git.kernel.org / stable/c/ef7311101ca43dd73b45bca7a30ac72d9535ff87
Patch