CVE-2023-53473

HIGH

Linux Kernel 5.2-5.15.111 - Denial of Service via ext4_dirhash Error Handling

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: ext4: improve error handling from ext4_dirhash() The ext4_dirhash() will *almost* never fail, especially when the hash tree feature was first introduced. However, with the addition of support of encrypted, casefolded file names, that function can most certainly fail today. So make sure the callers of ext4_dirhash() properly check for failures, and reflect the errors back up to their callers.

Scores

CVSS v3 7.8
EPSS 0.0015
EPSS Percentile 5.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (18)
linux/Kernel 5.16.0 - 6.1.29linux
linux/Kernel 5.2.0 - 5.15.112linux
linux/Kernel 6.2.0 - 6.2.16linux
linux/Kernel 6.3.0 - 6.3.3linux
Linux/Linux < 5.2
Linux/Linux 5.15.112 - 5.15.*
Linux/Linux 5.2
Linux/Linux 6.1.29 - 6.1.*
Linux/Linux 6.2.16 - 6.2.*
Linux/Linux 6.3.3 - 6.3.*
... and 8 more
Published Oct 01, 2025
Tracked Since Feb 18, 2026