We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2023-53062

net: usb: smsc95xx: Limit packet length to skb->len



Description

In the Linux kernel, the following vulnerability has been resolved: net: usb: smsc95xx: Limit packet length to skb->len Packet length retrieved from descriptor may be larger than the actual socket buffer length. In such case the cloned skb passed up the network stack will leak kernel memory contents.

Reserved 2025-05-02 | Published 2025-05-02 | Updated 2025-05-04 | Assigner Linux

Product status

Default status
unaffected

2f7ca802bdae2ca41022618391c70c2876d92190 before 733580e268a53db1cd01f2251419da91866378f6
affected

2f7ca802bdae2ca41022618391c70c2876d92190 before d3c145a4d24b752c9a1314d5a595014d51471418
affected

2f7ca802bdae2ca41022618391c70c2876d92190 before f2111c791d885211714db85f9a06188571c57dd0
affected

2f7ca802bdae2ca41022618391c70c2876d92190 before 33d1603a38e05886c538129ddfe00bd52d347e7b
affected

2f7ca802bdae2ca41022618391c70c2876d92190 before ba6c40227108f8ee428e42eb0337b48ed3001e65
affected

2f7ca802bdae2ca41022618391c70c2876d92190 before e041bef1adee02999cf24f9a2e15ed452bc363fe
affected

2f7ca802bdae2ca41022618391c70c2876d92190 before 70eb25c6a6cde149affe8a587371a3a8ad295ba0
affected

2f7ca802bdae2ca41022618391c70c2876d92190 before ff821092cf02a70c2bccd2d19269f01e29aa52cf
affected

Default status
affected

2.6.28
affected

Any version before 2.6.28
unaffected

4.14.312
unaffected

4.19.280
unaffected

5.4.240
unaffected

5.10.177
unaffected

5.15.105
unaffected

6.1.22
unaffected

6.2.9
unaffected

6.3
unaffected

References

git.kernel.org/...c/733580e268a53db1cd01f2251419da91866378f6

git.kernel.org/...c/d3c145a4d24b752c9a1314d5a595014d51471418

git.kernel.org/...c/f2111c791d885211714db85f9a06188571c57dd0

git.kernel.org/...c/33d1603a38e05886c538129ddfe00bd52d347e7b

git.kernel.org/...c/ba6c40227108f8ee428e42eb0337b48ed3001e65

git.kernel.org/...c/e041bef1adee02999cf24f9a2e15ed452bc363fe

git.kernel.org/...c/70eb25c6a6cde149affe8a587371a3a8ad295ba0

git.kernel.org/...c/ff821092cf02a70c2bccd2d19269f01e29aa52cf

cve.org (CVE-2023-53062)

nvd.nist.gov (CVE-2023-53062)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2023-53062

Support options

Helpdesk Chat, Email, Knowledgebase