PT-2025-54086 · Linux · Linux Kernel

Published

2023-04-13

·

Updated

2026-01-07

·

CVE-2023-54257

CVSS v2.0

7.7

High

VectorAV:A/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 5.4.0 #28
Description The Linux kernel contains a flaw related to memory management within the macb (Multi-port Ethernet Controller with Buffer) driver in extended buffer descriptor mode. The issue manifests as a potential memory corruption, which can lead to system instability or failure. The problem was identified through debugging and reproducible with CONFIG DMA API DEBUG enabled, revealing issues with the rx dma. Specifically, the kernel may attempt to free DMA memory that it has not allocated, or exceed the maximum number of overlapping DMA mappings.
Recommendations Update to a newer version of the Linux kernel than 5.4.0 #28.

Exploit

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2026-04224
CVE-2023-54257

Affected Products

Linux Kernel