CVE-2023-54248: Linux

EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Add check for kmemdup Since the kmemdup may return NULL pointer, it should be better to add check for the return value in order to avoid NULL pointer dereference.

Affected products

  • Linux Linux: from 5.15, before 5.15.111 (fixed in 5.15.111); from 5.16, before 6.1.28 (fixed in 6.1.28); from 6.2, before 6.2.15 (fixed in 6.2.15); from 6.3, before 6.3.2 (fixed in 6.3.2)

Published 2025-12-30. Last modified 2026-06-17.