PT-2025-41062 · Linux+3 · Linux Kernel+3

Published

2025-10-07

·

Updated

2026-03-14

·

CVE-2023-53618

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains a flaw related to the BTRFS file system. Specifically, the issue involves the handling of reloc trees, which are used for managing shared tree blocks between subvolumes. The system incorrectly allows reloc trees to be created for non-subvolume trees, leading to a mismatch and potential system crash when attempting to merge trees. This can occur due to corrupted on-disk data. The issue was identified through Syzbot crash reports and addressed by rejecting invalid reloc tree root keys and adding checks within the tree-checker utility.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2023-53618
SUSE-SU-2025:21040-1
SUSE-SU-2025:21052-1
SUSE-SU-2025:21056-1
SUSE-SU-2025:21064-1
SUSE-SU-2025:4057-1
SUSE-SU-2025:4128-1
SUSE-SU-2025:4132-1
SUSE-SU-2025:4140-1
SUSE-SU-2025:4141-1
SUSE-SU-2025:4301-1

Affected Products

Btrfs
Debian
Linux Kernel
Suse