PT-2025-54086 · Linux · Linux Kernel
CVE-2023-54257
·
Publicado
2023-04-13
·
Atualizado
2026-01-07
CVSS v3.1
9.8
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 5.4.0 #28
Description
The Linux kernel contains a flaw related to memory management within the macb (Multi-port Ethernet Controller with Buffer) driver in extended buffer descriptor mode. The issue manifests as a potential memory corruption, which can lead to system instability or failure. The problem was identified through debugging and reproducible with CONFIG DMA API DEBUG enabled, revealing issues with the rx dma. Specifically, the kernel may attempt to free DMA memory that it has not allocated, or exceed the maximum number of overlapping DMA mappings.
Recommendations
Update to a newer version of the Linux kernel than 5.4.0 #28.
Exploit
Correção
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Linux Kernel