PT-2025-37548 · Linux+2 · Linux Kernel+2

Published

2023-07-26

·

Updated

2025-11-19

·

CVE-2023-53184

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the Linux kernel related to the handling of Scalable Vector Extension (SVE) state allocation when changing the SME vector length. The issue arises from reallocating the SVE state before updating the vector length in the task struct, leading to a potential undersized buffer allocation and memory corruption. The update of the vector length is now performed before the allocation to ensure the new vector length is considered.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-02046
CVE-2023-53184
RHSA-2024:2394
SUSE-SU-2025:03600-1
SUSE-SU-2025:03634-1
SUSE-SU-2025:20851-1
SUSE-SU-2025:20861-1
SUSE-SU-2025:20870-1
SUSE-SU-2025:20898-1
SUSE-SU-2025:3751-1
SUSE-SU-2025:4057-1
SUSE-SU-2025:4132-1
SUSE-SU-2025:4141-1

Affected Products

Astra Linux
Linux Kernel
Suse