PT-2025-37677 · Linux+1 · Linux Kernel+1
Published
2023-04-04
·
Updated
2025-09-16
·
CVE-2023-53236
CVSS v2.0
6.0
Medium
| Vector | AV:L/AC:H/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 6.3.0-rc2-eeac8ede1755+
Description
A flaw exists in the Linux kernel's iommufd subsystem related to page frame number (pfn) list corruption during batch carry operations. Specifically, if
batch->end is 0, setting npfns[0] before computing the new pfn value can lead to page accounting corruption. This can manifest as various kinds of page meta-data corruption failures, as observed in warnings during CPU operation.Recommendations
Update to a version newer than 6.3.0-rc2-eeac8ede1755+ to address this issue.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Astra Linux
Linux Kernel