Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2023-53695— udf: Detect system inodes linked into directory hierarchy

Quick assessment

Affected
Linux Linux
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于系统索引节点链接到目录层次结构,可能导致文件系统进一步损坏和内核混乱。

CVSS 7.8 · High EPSS 0.15% · P5

Possible ATT&CK Techniques 1 AI

T1070 · Indicator Removal

Affected Version Matrix 18

VendorProduct Version RangeStatus
Linux Linux 6174c2eb8ecef271159bdcde460ce8af54d8f72f< 1dc71eeb198a8daa17d0c995998a53b0b749a158 affected
6174c2eb8ecef271159bdcde460ce8af54d8f72f< d747b31e2925a2f384e7dd1901a2e5bc5f984ed8 affected
6174c2eb8ecef271159bdcde460ce8af54d8f72f< a44ec34b90440ada190924f5908b97026504fdcd affected
6174c2eb8ecef271159bdcde460ce8af54d8f72f< 37e74003d81e79457535cbbdfa1603431c03fac0 affected
6174c2eb8ecef271159bdcde460ce8af54d8f72f< 1f328751b65c49c13a312d67a3bf27766b85baf7 affected
6174c2eb8ecef271159bdcde460ce8af54d8f72f< 9e3b5ef7d02eaa6553e79b4af9bd99227280f245 affected
6174c2eb8ecef271159bdcde460ce8af54d8f72f< 85a37983ec69cc9fcd188bc37c4de15ee326355a affected
801c7a20d255e300ab51a6fcb1d0e218d136b16f affected
… +10 more rows
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2023-53695

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
udf: Detect system inodes linked into directory hierarchy
Source: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: udf: Detect system inodes linked into directory hierarchy When UDF filesystem is corrupted, hidden system inodes can be linked into directory hierarchy which is an avenue for further serious corruption of the filesystem and kernel confusion as noticed by syzbot fuzzed images. Refuse to access system inodes linked into directory hierarchy and vice versa.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于系统索引节点链接到目录层次结构,可能导致文件系统进一步损坏和内核混乱。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
Linux Linux 6174c2eb8ecef271159bdcde460ce8af54d8f72f ~ 1dc71eeb198a8daa17d0c995998a53b0b749a158 -
Linux Linux 3.18 -

II. Public POCs for CVE-2023-53695

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2023-53695

登录查看更多情报信息。

Patches & Fixes for CVE-2023-53695 (7)

Same Patch Batch · Linux · 2025-10-22 · 67 CVEs total

CVE-2023-53705 8.2 HIGH ipv6: Fix out-of-bounds access in ipv6_find_tlv()
CVE-2023-53711 8.2 HIGH NFS: Fix a potential data corruption
CVE-2023-53713 7.8 HIGH arm64: sme: Use STR P to clear FFR context field in streaming SVE mode
CVE-2023-53729 7.8 HIGH soc: qcom: qmi_encdec: Restrict string length in decode
CVE-2023-53698 7.8 HIGH xsk: fix refcount underflow in error path
CVE-2023-53707 7.8 HIGH drm/amdgpu: Fix integer overflow in amdgpu_cs_pass1
CVE-2023-53718 7.8 HIGH ring-buffer: Do not swap cpu_buffer during resize process
CVE-2023-53692 7.8 HIGH ext4: fix use-after-free read in ext4_find_extent for bigalloc + inline
CVE-2022-50581 7.8 HIGH hfs: fix OOB Read in __hfs_brec_find
CVE-2022-50567 7.8 HIGH fs: jfs: fix shift-out-of-bounds in dbAllocAG
CVE-2022-50570 7.8 HIGH platform/chrome: fix memory corruption in ioctl
CVE-2022-50569 7.8 HIGH xfrm: Update ipcomp_scratches with NULL when freed
CVE-2023-53726 7.1 HIGH arm64: csum: Fix OoB access in IP checksum code for negative lengths
CVE-2023-53704 clk: imx: clk-imx8mp: improve error handling in imx8mp_clocks_probe()
CVE-2023-53710 wifi: mt76: mt7921: fix error code of return in mt7921_acpi_read
CVE-2023-53706 mm/vmemmap/devdax: fix kernel crash when probing devdax devices
CVE-2023-53714 drm/stm: ltdc: fix late dereference check
CVE-2023-53708 ACPI: x86: s2idle: Catch multiple ACPI_TYPE_PACKAGE objects
CVE-2023-53712 ARM: 9317/1: kexec: Make smp stop calls asynchronous
CVE-2023-53719 serial: arc_uart: fix of_iomap leak in `arc_serial_probe`

Showing top 20 of 67 CVEs. View all on vendor page &rarr; →

IV. Related Vulnerabilities

V. Comments for CVE-2023-53695

No comments yet


Leave a comment