PT-2025-40213 · Linux+1 · Linux Kernel+1

Published

2022-12-16

·

Updated

2025-10-24

·

CVE-2023-53506

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains an issue where merging very long extents could lead to corruption of extents within a file. The problem stemmed from unnecessarily complex logic when attempting to maximize the length of the first extent during merging, and a bug in that logic was identified through syzbot testing. The resolution involves avoiding the merging of extents that are excessively long together.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Corruption

RCE

Weakness Enumeration

Related Identifiers

BDU:2025-12857
CVE-2023-53506
OESA-2025-2533
SUSE-SU-2025:03614-1
SUSE-SU-2025:03615-1
SUSE-SU-2025:03628-1
SUSE-SU-2025:3716-1
SUSE-SU-2025:3761-1

Affected Products

Linux Kernel
Suse