CVE-2023-53751: Linux
Critical severity, CVSS 9.8. EPSS: 0.4% chance of exploitation in the next 30 days.
In the Linux kernel, the following vulnerability has been resolved: cifs: fix potential use-after-free bugs in TCP_Server_Info::hostname TCP_Server_Info::hostname may be updated once or many times during reconnect, so protect its access outside reconnect path as well and then prevent any potential use-after-free bugs.
Affected products
- Linux Linux: from 5.0, before 6.1.28 (fixed in 6.1.28); from 6.2, before 6.2.15 (fixed in 6.2.15); from 6.3, before 6.3.2 (fixed in 6.3.2)
Published 2025-12-08. Last modified 2026-08-04.