CVE-2023-52494

HIGH

Linux kernel 5.13-5.15.149 - Out-of-bounds Write via Unaligned Event Ring Read Pointer

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: bus: mhi: host: Add alignment check for event ring read pointer Though we do check the event ring read pointer by "is_valid_ring_ptr" to make sure it is in the buffer range, but there is another risk the pointer may be not aligned. Since we are expecting event ring elements are 128 bits(struct mhi_ring_element) aligned, an unaligned read pointer could lead to multiple issues like DoS or ring buffer memory corruption. So add a alignment check for event ring read pointer.

Scores

CVSS v3 7.8
EPSS 0.0028
EPSS Percentile 19.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-787
Status published
Products (19)
Linux/Linux < 5.13
Linux/Linux 5.10.36 - 5.11
Linux/Linux 5.11.20 - 5.12
Linux/Linux 5.12.3 - 5.13
Linux/Linux 5.13
Linux/Linux 5.15.149 - 5.15.*
Linux/Linux 6.1.76 - 6.1.*
Linux/Linux 6.6.15 - 6.6.*
Linux/Linux 6.7.3 - 6.7.*
Linux/Linux 6.8
... and 9 more
Published Mar 11, 2024
Tracked Since Feb 18, 2026