CVE-2023-52834

MEDIUM

Linux kernel - DMA RX Overflow in atl1c Driver

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: atl1c: Work around the DMA RX overflow issue This is based on alx driver commit 881d0327db37 ("net: alx: Work around the DMA RX overflow issue"). The alx and atl1c drivers had RX overflow error which was why a custom allocator was created to avoid certain addresses. The simpler workaround then created for alx driver, but not for atl1c due to lack of tester. Instead of using a custom allocator, check the allocated skb address and use skb_reserve() to move away from problematic 0x...fc0 address. Tested on AR8131 on Acer 4540.

Scores

CVSS v3 5.5
EPSS 0.0024
EPSS Percentile 15.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

Status published
Products (17)
linux/Kernel 2.6.29 - 5.15.140linux
linux/Kernel 5.16.0 - 6.1.64linux
linux/Kernel 6.2.0 - 6.5.13linux
linux/Kernel 6.6.0 - 6.6.3linux
Linux/Linux < 2.6.29
Linux/Linux 2.6.29
Linux/Linux 43250ddd75a35d1f7926d989a10fefd30c37eaa7 - 32f08b7b430ee01ec47d730f961a3306c1c7b6fb
Linux/Linux 43250ddd75a35d1f7926d989a10fefd30c37eaa7 - 54a6152da4993ec8e4b53dc3cf577f5a2c829afa
Linux/Linux 43250ddd75a35d1f7926d989a10fefd30c37eaa7 - 57e44ff9c2c9747b2b1a53556810b0e5192655d6
Linux/Linux 43250ddd75a35d1f7926d989a10fefd30c37eaa7 - 86565682e9053e5deb128193ea9e88531bbae9cf
... and 7 more
Published May 21, 2024
Tracked Since Feb 18, 2026