CVE-2023-54135

Linux Kernel 6.1.0-6.1.36, 6.2.0-6.3.10, 6.4.0 - Out-of-Bounds Access in Maple Tree mas_wr_end_piv()

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: maple_tree: fix potential out-of-bounds access in mas_wr_end_piv() Check the write offset end bounds before using it as the offset into the pivot array. This avoids a possible out-of-bounds access on the pivot array if the write extends to the last slot in the node, in which case the node maximum should be used as the end pivot. akpm: this doesn't affect any current callers, but new users of mapletree may encounter this problem if backported into earlier kernels, so let's fix it in -stable kernels in case of this.

Scores

EPSS 0.0018
EPSS Percentile 8.1%

Details

Status published
Products (13)
linux/Kernel 6.1.0 - 6.1.37linux
linux/Kernel 6.2.0 - 6.3.11linux
linux/Kernel 6.4.0 - 6.4.1linux
Linux/Linux < 6.1
Linux/Linux 54a611b605901c7d5d05b6b8f5d04a6ceb0962aa - 4e2ad53ababeaac44d71162650984abfe783960c
Linux/Linux 54a611b605901c7d5d05b6b8f5d04a6ceb0962aa - cd00dd2585c4158e81fdfac0bbcc0446afbad26d
Linux/Linux 54a611b605901c7d5d05b6b8f5d04a6ceb0962aa - dc4751bd4aba01ccfc02f91adfeee0ba4cda405c
Linux/Linux 54a611b605901c7d5d05b6b8f5d04a6ceb0962aa - f5fcf6555a2a4f32947d17b92b173837cc652891
Linux/Linux 6.1
Linux/Linux 6.1.37 - 6.1.*
... and 3 more
Published Dec 24, 2025
Tracked Since Feb 18, 2026