PT-2025-54086 · Linux · Linux Kernel
Published
2023-04-13
·
Updated
2026-01-07
·
CVE-2023-54257
CVSS v2.0
7.7
High
| Vector | AV:A/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 5.4.0 #28
Description
The Linux kernel contains a flaw related to memory management within the macb (Multi-port Ethernet Controller with Buffer) driver in extended buffer descriptor mode. The issue manifests as a potential memory corruption, which can lead to system instability or failure. The problem was identified through debugging and reproducible with CONFIG DMA API DEBUG enabled, revealing issues with the rx dma. Specifically, the kernel may attempt to free DMA memory that it has not allocated, or exceed the maximum number of overlapping DMA mappings.
Recommendations
Update to a newer version of the Linux kernel than 5.4.0 #28.
Exploit
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linux Kernel