PT-2025-43114 · Linux+2 · Linux Kernel+2

Published

2024-04-30

·

Updated

2025-11-28

·

CVE-2023-53713

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The Linux kernel contains a flaw related to the Scalable Vector Extension (SVE) mode and the Floating-point Feature Register (FFR). Specifically, when saving the SVE state in streaming SVE mode, the FFR register is inaccessible. A previous commit attempted to clear the FFR field in the in-memory context structure using an 8-byte store. However, this approach fails to clear the entire field or corrupts memory if the SME vector length is not 64 bytes. This issue has resulted in intermittent kfence splats during continuous integration and kmalloc Redzone corruption messages during the 'fp-stress' kselftest. The issue is addressed by replacing the 8-byte store with a store of a predicate register initialized with PFALSE, ensuring complete field clearing.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

ALSA-2025_16880
CVE-2023-53713
RHSA-2024:2394
RHSA-2024_2394
SUSE-SU-2025:21040-1
SUSE-SU-2025:21052-1
SUSE-SU-2025:21056-1
SUSE-SU-2025:21064-1
SUSE-SU-2025:4057-1
SUSE-SU-2025:4128-1
SUSE-SU-2025:4132-1
SUSE-SU-2025:4140-1
SUSE-SU-2025:4141-1
SUSE-SU-2025:4301-1

Affected Products

Linux Kernel
Red Hat
Suse