CNNVD-202509-2903 Information

CNNVD ID

CNNVD-202509-2903

CVE-2023-53420

  • CNNVD Published: 2025-09-18

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于ntfs_listxattr函数中ea_all迭代逻辑错误,可能导致越界读取。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. Linux Kernel has a security loophole, which originates from the ea aller logical error in the ntfs listxattr function, which may lead to cross-border reading.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-09-18

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/f3380d895e28a32632eb3609f5bd515adee4e5a1 https://git.kernel.org/stable/c/3c675ddffb17a8b1e32efad5c983254af18b12c2 https://git.kernel.org/stable/c/c86a2517df6c9304db8fb12b77136ec7a5d85994 https://git.kernel.org/stable/c/721b75ea2dfce53a8890dff92ae01afca8e74f88 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-19-09-2025-48259

Patch

https://www.kernel.org/

Share on: