cbcvebase.
CVE-2023-52687
published 2024-05-17

CVE-2023-52687: In the Linux kernel, the following vulnerability has been resolved: crypto: safexcel - Add error handling for dma_map_sg() calls Macro dma_map_sg() may return…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.60%
45.2th percentile
In the Linux kernel, the following vulnerability has been resolved: crypto: safexcel - Add error handling for dma_map_sg() calls Macro dma_map_sg() may return 0 on error. This patch enables checks in case of the macro failure and ensures unmapping of previously mapped buffers with dma_unmap_sg(). Found by Linux Verification Center (linuxtesting.org) with static analysis tool SVACE.

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.76-1 (bookworm)linux 6.1.76-1 (bookworm)
linuxlinux
linuxlinux>= 49186a7d9e46ff132a0ed9b721ad6b6a58dba6c1 < 4c0ac81a172a69a7733290915276672787e904ec4c0ac81a172a69a7733290915276672787e904ec
linuxlinux>= 49186a7d9e46ff132a0ed9b721ad6b6a58dba6c1 < 8084b788c2fb1260f7d44c032d5124680b20d2b28084b788c2fb1260f7d44c032d5124680b20d2b2
linuxlinux>= 49186a7d9e46ff132a0ed9b721ad6b6a58dba6c1 < fc0b785802b856566df3ac943e38a072557001c4fc0b785802b856566df3ac943e38a072557001c4
linuxlinux>= 49186a7d9e46ff132a0ed9b721ad6b6a58dba6c1 < 87e02063d07708cac5bfe9fd3a6a242898758ac887e02063d07708cac5bfe9fd3a6a242898758ac8
linuxlinux_kernel>= 0 < 6.1.76-16.1.76-1
linuxlinux_kernel>= 0 < 6.6.15-16.6.15-1
linuxlinux_kernel>= 0 < 6.6.15-16.6.15-1
linuxlinux_kernel>= 6.1 < 6.1.756.1.75
linuxlinux_kernel>= 6.2 < 6.6.146.6.14
linuxlinux_kernel>= 6.7 < 6.7.26.7.2

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
vendor_ubuntu6.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.