UDF Vulnerability in Linux Kernel Affects Data Integrity
CVE-2023-53295
What is CVE-2023-53295?
A vulnerability in the Linux kernel related to the UDF (Universal Disk Format) has been identified. When write operations to inline files fail or are only partially completed, the system erroneously updates the file length as though the entire write succeeded. This issue could lead to data integrity problems, as the reported length does not reflect the actual state of the stored data. The fix ensures that the file length is only updated when a write operation is successfully completed.
Affected Version(s)
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 5621f7a8139053d0c3c47fb68ee9f602139eb40a
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 5a6c373d761f55635e175fa2f407544bae8f583b
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 7bd8d9e1cf5607ee14407f4060b9a1dbb3c42802