CVE-2023-53506

Source
https://cve.org/CVERecord?id=CVE-2023-53506
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53506.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-53506
Downstream
Related
Published
2025-10-01T11:45:56.616Z
Modified
2026-03-20T12:33:11.884592Z
Summary
udf: Do not bother merging very long extents
Details

In the Linux kernel, the following vulnerability has been resolved:

udf: Do not bother merging very long extents

When merging very long extents we try to push as much length as possible to the first extent. However this is unnecessarily complicated and not really worth the trouble. Furthermore there was a bug in the logic resulting in corrupting extents in the file as syzbot reproducer shows. So just don't bother with the merging of extents that are too long together.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/53xxx/CVE-2023-53506.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Fixed
d52252a1de4cf96a34f722b0cd8902d8ff78eb57
Fixed
5d029799d381a9ee06209a222cae75f04c5d5304
Fixed
3d20e3b768aff32112bdce8d3219d923ae75f9f1
Fixed
965982feb333aefa9256c0fe188b5f1b958aef63
Fixed
9a8d602f0723586e668bae7e65c832ceb9bcc8bc
Fixed
adac9ac6d2e04ea0782b91a00ba10706002f3ec4
Fixed
7a965da79f2d22601f329cbfce588386b0847544
Fixed
53cafe1d6d8ef9f93318e5bfccc0d24f27d41ced

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53506.json"