Description
An issue was discovered in drivers/net/ethernet/intel/igb/igb_main.c in the IGB driver in the Linux kernel before 6.5.3. A buffer size may not be adequate for frames larger than the MTU.
References (4)
Core 4
Core References
Mailing List, Patch
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/commit/?id=bb5ed01cd2428cd25b1c88a3a9cba87055eb289f
Third Party Advisory
https://security.netapp.com/advisory/ntap-20231110-0001/
Mailing List, Third Party Advisory mailing-list
https://lists.debian.org/debian-lts-announce/2024/01/msg00004.html
Scores
CVSS v3
7.5
EPSS
0.0055
EPSS Percentile
41.4%
Attack Vector
ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-131
Status
published
Products (2)
debian/debian_linux
10.0
linux/linux_kernel
3.4 - 4.14.326
Published
Oct 15, 2023
Tracked Since
Feb 18, 2026