CVE-2023-53506

HIGH

Linux kernel - DoS

Title source: llm

Description

In the Linux kernel, the following vulnerability has been resolved: udf: Do not bother merging very long extents When merging very long extents we try to push as much length as possible to the first extent. However this is unnecessarily complicated and not really worth the trouble. Furthermore there was a bug in the logic resulting in corrupting extents in the file as syzbot reproducer shows. So just don't bother with the merging of extents that are too long together.

Scores

CVSS v3 7.8
EPSS 0.0001
EPSS Percentile 2.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Classification

Status published

Affected Products (13)

linux/linux_kernel < 4.14.308
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/linux_kernel
linux/Kernel < 4.14.308linux
linux/Kernel < 4.19.276linux
linux/Kernel < 5.4.235linux
linux/Kernel < 5.10.173linux
linux/Kernel < 5.15.99linux
linux/Kernel < 6.1.16linux
linux/Kernel < 6.2.3linux

Timeline

Published Oct 01, 2025
Tracked Since Feb 18, 2026