CVE-2023-54021

Source
https://cve.org/CVERecord?id=CVE-2023-54021
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-54021.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-54021
Downstream
Related
Published
2025-12-24T10:55:51.373Z
Modified
2026-03-20T12:33:24.384967Z
Summary
ext4: set goal start correctly in ext4_mb_normalize_request
Details

In the Linux kernel, the following vulnerability has been resolved:

ext4: set goal start correctly in ext4mbnormalize_request

We need to set acgex to notify the goal start used in ext4mbfindbygoal. Set acgex instead of acfex in ext4mbnormalizerequest. Besides we should assure goal start is in range [firstdatablock, blockscount) as ext4mbinitialize_context does.

[ Added a check to make sure size is less than ar->pright; otherwise we could end up passing an underflowed value of ar->pright - size to ext4getgroupnoandoffset(), which will trigger a BUGON later on. - TYT ]

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/54xxx/CVE-2023-54021.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
c9de560ded61faa5b754137b7753da252391c55a
Fixed
2479bb6cbdb4d56b807bbe5229e3e26a6f1f4530
Fixed
390eee955d4de4662db5e3e9e9a9eae020432cb7
Fixed
cee78217a7ae72d11c2e21e1a5263b8044489823
Fixed
3ca3005b502ca8ea87d6a344323b179b48c4e4a3
Fixed
bc4a3e1d07a86ae5845321d371190244acacb2f2
Fixed
c6bee8970075b256fc1b07bf4873049219380818
Fixed
abb330ffaa3a0ae7ce632e28c9260b461c01f19f
Fixed
b07ffe6927c75d99af534d685282ea188d9f71a6

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-54021.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
2.6.25
Fixed
4.14.316
Type
ECOSYSTEM
Events
Introduced
4.15.0
Fixed
4.19.284
Type
ECOSYSTEM
Events
Introduced
4.20.0
Fixed
5.4.244
Type
ECOSYSTEM
Events
Introduced
5.5.0
Fixed
5.10.181
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.113
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.30
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.3.4

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-54021.json"