PT-2026-52325 · Linux · Linux Kernel
CVE-2026-53230
·
Published
2026-06-25
·
Updated
2026-09-07
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 7.0.0-rc6
Description
A slab-out-of-bounds issue exists in the
mlx5 query nic vport mac list() function. The function determines the size of the firmware command buffer based on the Physical Function (PF) log max current uc/mc list capabilities. If a Virtual Function (VF) vport is queried with a larger configured maximum via devlink, the firmware response can overflow the allocated buffer.Recommendations
Update the Linux kernel to version 7.0.0-rc6 or later.
Exploit
Fix
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linux Kernel