PT-2024-14749 · Linux+2 · Linux Kernel+2

Niklas Schnelle

·

Published

2023-11-08

·

Updated

2024-11-19

·

CVE-2023-52790

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue is related to out-of-bounds TLB allocations with CONFIG SWIOTLB DYNAMIC. The transient pool can be smaller than IO TLB SEGSIZE, but the free list is initialized with the assumption that the total number of slots is a multiple of IO TLB SEGSIZE. As a result, swiotlb area find slots() may allocate slots past the end of a transient IO TLB buffer.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Corruption

Weakness Enumeration

Related Identifiers

BDU:2025-15437
CVE-2023-52790

Affected Products

Astra Linux
Linux Kernel
Red Os