PT-2024-14646 · Linux+6 · Linux Kernel+6

Syzbot

·

Published

2023-11-21

·

Updated

2025-09-29

·

CVE-2023-52603

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.0.0
Description The issue is caused when the value of fsi becomes less than -1. The check to break the loop when fsi value becomes -1 is present but syzbot was able to produce a value less than -1, which causes the error. This patch simply adds the change for the values less than 0. The patch is tested via syzbot.
Recommendations To resolve the issue, update the Linux kernel to a version that includes the patch for this vulnerability. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Validation of Array Index

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
ALT-PU-2024-3457
BDU:2025-07477
CVE-2023-52603
DLA-3840-1
DLA-3842-1
DSA-5658-1
DSA-5681-1
OESA-2024-1344
OESA-2024-1346
OESA-2024-1347
OESA-2024-1348
OESA-2024-1349
OESA-2024-1392
OPENSUSE-SU-2024_1322-1
OPENSUSE-SU-2024_1322-2
OPENSUSE-SU-2024_1332-1
OPENSUSE-SU-2024_1332-2
OPENSUSE-SU-2024_1466-1
OPENSUSE-SU-2024_1480-1
OPENSUSE-SU-2024_1490-1
SUSE-SU-2024:1466-1
SUSE-SU-2024:1480-1
SUSE-SU-2024:1490-1
USN-6688-1
USN-6739-1
USN-6740-1
USN-6741-1
USN-6742-1
USN-6742-2
USN-6743-1
USN-6743-2
USN-6743-3

Affected Products

Alt Linux
Astra Linux
Linuxmint
Linux Kernel
Red Os
Suse
Ubuntu