CVE-2023-53662: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: ext4: fix memory leaks in ext4_fname_{setup_filename,prepare_lookup} If the filename casefolding fails, we'll be leaking memory from the fscrypt_name struct, namely from the 'crypto_buf.name' member. Make sure we free it in the error path on both ext4_fname_setup_filename() and ext4_fname_prepare_lookup() functions.

Affected products

  • Linux Linux Kernel: from 5.13, before 6.1.54 (fixed in 6.1.54); from 6.2, before 6.5.4 (fixed in 6.5.4)

Published 2025-10-07. Last modified 2026-06-17.