PT-2025-37677 · Linux+1 · Linux Kernel+1

Published

2023-04-04

·

Updated

2025-09-16

·

CVE-2023-53236

CVSS v2.0

6.0

Medium

VectorAV:L/AC:H/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.3.0-rc2-eeac8ede1755+
Description A flaw exists in the Linux kernel's iommufd subsystem related to page frame number (pfn) list corruption during batch carry operations. Specifically, if batch->end is 0, setting npfns[0] before computing the new pfn value can lead to page accounting corruption. This can manifest as various kinds of page meta-data corruption failures, as observed in warnings during CPU operation.
Recommendations Update to a version newer than 6.3.0-rc2-eeac8ede1755+ to address this issue.

Exploit

Fix

Weakness Enumeration

Related Identifiers

BDU:2026-06002
CVE-2023-53236

Affected Products

Astra Linux
Linux Kernel