Home

Description

In the Linux kernel, the following vulnerability has been resolved: fs: hfsplus: remove WARN_ON() from hfsplus_cat_{read,write}_inode() syzbot is hitting WARN_ON() in hfsplus_cat_{read,write}_inode(), for crafted filesystem image can contain bogus length. There conditions are not kernel bugs that can justify kernel to panic.

PUBLISHED Reserved 2025-10-07 | Published 2025-10-07 | Updated 2025-10-29 | Assigner Linux

Product status

Default status
unaffected

f62f5ee63052324ad94dd05091743d9e09f72070 (git) before 61af77acd039ffd221bf7adf0dc95d0a4d377505
affected

ab778439c6fa0071698b62a351f79d319fd72c53 (git) before c074913b12db3632b11588b31bbfb0fa80a0a1c9
affected

781fa141414ef18b52f15037497155f80bf0ecab (git) before a75d9211a07fed513c08c5d4861c4a36ac6a74fe
affected

1f881d9201f6e0a917004a14329f9ff3d0bfa1e5 (git) before c8daee66585897a4c90d937c91e762100237bff9
affected

48d9e2e6de01ed35e965eb549758a837c07b601d (git) before 37cab61a52d6f42b2d961c51bcf369f09e235fb5
affected

55d1cbbbb29e6656c662ee8f73ba1fc4777532eb (git) before 48960a503fcec76d3f72347b7e679dda08ca43be
affected

55d1cbbbb29e6656c662ee8f73ba1fc4777532eb (git) before 3a9d68d84b2e41ba3f2a727b36f035fad6800492
affected

55d1cbbbb29e6656c662ee8f73ba1fc4777532eb (git) before 81b21c0f0138ff5a499eafc3eb0578ad2a99622c
affected

Default status
affected

5.16
affected

Any version before 5.16
unaffected

4.14.316 (semver)
unaffected

4.19.284 (semver)
unaffected

5.4.244 (semver)
unaffected

5.10.181 (semver)
unaffected

5.15.113 (semver)
unaffected

6.1.30 (semver)
unaffected

6.3.4 (semver)
unaffected

6.4 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/61af77acd039ffd221bf7adf0dc95d0a4d377505

git.kernel.org/...c/c074913b12db3632b11588b31bbfb0fa80a0a1c9

git.kernel.org/...c/a75d9211a07fed513c08c5d4861c4a36ac6a74fe

git.kernel.org/...c/c8daee66585897a4c90d937c91e762100237bff9

git.kernel.org/...c/37cab61a52d6f42b2d961c51bcf369f09e235fb5

git.kernel.org/...c/48960a503fcec76d3f72347b7e679dda08ca43be

git.kernel.org/...c/3a9d68d84b2e41ba3f2a727b36f035fad6800492

git.kernel.org/...c/81b21c0f0138ff5a499eafc3eb0578ad2a99622c

cve.org (CVE-2023-53683)

nvd.nist.gov (CVE-2023-53683)

Download JSON