CVE-2023-53380
Published: Sep 18, 2025
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: md/raid10: fix null-ptr-deref of mreplace in raid10_sync_request There are two check of 'mreplace' in raid10_sync_request(). In the first check, 'need_replace' will be set and 'mreplace' will be used later if no-Faulty 'mreplace' exists, In the second check, 'mreplace' will be set to NULL if it is Faulty, but 'need_replace' will not be changed accordingly. null-ptr-deref occurs if Faulty is set between two check. Fix it by merging two checks into one. And replace 'need_replace' with 'mreplace' because their values are always the same.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected ee37d7314a32ab6809eacc3389bad0406c69a81f - < 45fa023b3334a7ae6f6c4eb977295804222dfa28affected ee37d7314a32ab6809eacc3389bad0406c69a81f - < 2990e2ece18dd4cca71b3109c80517ad94adb065affected ee37d7314a32ab6809eacc3389bad0406c69a81f - < f4368a462b1f9a8ecc2fdb09a28c3d4cad302a4faffected ee37d7314a32ab6809eacc3389bad0406c69a81f - < 222cc459d59857ee28a5366dc225ab42b22f9272affected ee37d7314a32ab6809eacc3389bad0406c69a81f - < b5015b97adda6a24dd3e713c63e521ecbeff25c6+2 more versions |
Linux | Linux | affected 4.20unaffected 0 - < 4.20unaffected 5.4.251 - <= 5.4.*unaffected 5.10.188 - <= 5.10.*unaffected 5.15.121 - <= 5.15.*+4 more versions |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now