CVE-2023-54069 describes a bug in the Linux kernel's ext4 filesystem, specifically within the ext4_mb_new_inode_pa() function. This vulnerability arises from an integer overflow when calculating the end position of an ext4_free_extent, leading to a kernel BUG_ON trigger and system instability. While the CVSS score is not provided, the issue is a denial-of-service vulnerability affecting systems utilizing the ext4 filesystem. There is no indication of active exploitation, publicly available exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 4.14.316, < 4.15CPE match | cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 4.19.284, < 4.20CPE match | cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 5.10.181, < 5.10.200CPE match | cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 5.15.113, < 5.15.138CPE match | cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
>= 5.4.244, < 5.4.260CPE match | cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*:* |
CVSS data has not been published for this CVE.
No media coverage found for this CVE.