CVE-2023-52766
published 2024-05-21CVE-2023-52766: In the Linux kernel, the following vulnerability has been resolved: i3c: mipi-i3c-hci: Fix out of bounds access in hci_dma_irq_handler Do not loop over ring…
PriorityP428high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.25%
16.2th percentile
In the Linux kernel, the following vulnerability has been resolved:
i3c: mipi-i3c-hci: Fix out of bounds access in hci_dma_irq_handler
Do not loop over ring headers in hci_dma_irq_handler() that are not
allocated and enabled in hci_dma_init(). Otherwise out of bounds access
will occur from rings->headers[i] access when i >= number of allocated
ring headers.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.64-1 (bookworm) | linux 6.1.64-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 3a379bbcea0af6280e1ca0d1edfcf4e68cde6ee0 < d23ad76f240c0f597b7a9eb79905d246f27d40df | d23ad76f240c0f597b7a9eb79905d246f27d40df |
| linux | linux | >= 3a379bbcea0af6280e1ca0d1edfcf4e68cde6ee0 < 8be39f66915b40d26ea2c18ba84b5c3d5da6809b | 8be39f66915b40d26ea2c18ba84b5c3d5da6809b |
| linux | linux | >= 3a379bbcea0af6280e1ca0d1edfcf4e68cde6ee0 < 7c2b91b30d74d7c407118ad72502d4ca28af1af6 | 7c2b91b30d74d7c407118ad72502d4ca28af1af6 |
| linux | linux | >= 3a379bbcea0af6280e1ca0d1edfcf4e68cde6ee0 < 4c86cb2321bd9c72d3b945ce7f747961beda8e65 | 4c86cb2321bd9c72d3b945ce7f747961beda8e65 |
| linux | linux | >= 3a379bbcea0af6280e1ca0d1edfcf4e68cde6ee0 < 45a832f989e520095429589d5b01b0c65da9b574 | 45a832f989e520095429589d5b01b0c65da9b574 |
| linux | linux_kernel | < 5.15.140 | 5.15.140 |
| linux | linux_kernel | >= 0 < 6.1.64-1 | 6.1.64-1 |
| linux | linux_kernel | >= 0 < 6.5.13-1 | 6.5.13-1 |
| linux | linux_kernel | >= 0 < 6.5.13-1 | 6.5.13-1 |
| linux | linux_kernel | >= 5.16 < 6.1.64 | 6.1.64 |
| linux | linux_kernel | >= 6.2 < 6.5.13 | 6.5.13 |
| linux | linux_kernel | >= 6.6 < 6.6.3 | 6.6.3 |
CVSS provenance
nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv7.1HIGH
vendor_debian7.1HIGH
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: i3c: mipi-i3c-hci: Fix out of bounds access in hci_dma_irq_handler
vendor_redhat·2024-05-21·CVSS 7.1
CVE-2023-52766 [HIGH] CWE-125 kernel: i3c: mipi-i3c-hci: Fix out of bounds access in hci_dma_irq_handler
kernel: i3c: mipi-i3c-hci: Fix out of bounds access in hci_dma_irq_handler
In the Linux kernel, the following vulnerability has been resolved:
i3c: mipi-i3c-hci: Fix out of bounds access in hci_dma_irq_handler
Do not loop over ring headers in hci_dma_irq_handler() that are not
allocated and enabled in hci_dma_init(). Otherwise out of bounds access
will occur from rings->headers[i] access when i >= number of allocated
ring headers.
Statement: No Red Hat products are affected by this vulnerability.
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8)
Debian
CVE-2023-52766: linux - In the Linux kernel, the following vulnerability has been resolved: i3c: mipi-i...
vendor_debian·2023·CVSS 7.1
CVE-2023-52766 [HIGH] CVE-2023-52766: linux - In the Linux kernel, the following vulnerability has been resolved: i3c: mipi-i...
In the Linux kernel, the following vulnerability has been resolved: i3c: mipi-i3c-hci: Fix out of bounds access in hci_dma_irq_handler Do not loop over ring headers in hci_dma_irq_handler() that are not allocated and enabled in hci_dma_init(). Otherwise out of bounds access will occur from rings->headers[i] access when i >= number of allocated ring headers.
Scope: local
bookworm: resolved (fixed in 6.1.64-1)
bullseye: open
forky: resolved (fixed in 6.5.13-1)
sid: resolved (fixed in 6.5.13-1)
trixie: resolved (fixed in 6.5.13-1)
GHSA
GHSA-h7cv-m349-g3xp: In the Linux kernel, the following vulnerability has been resolved:
i3c: mipi-i3c-hci: Fix out of bounds access in hci_dma_irq_handler
Do not loop o
ghsa_unreviewed·2024-05-21
CVE-2023-52766 [HIGH] CWE-125 GHSA-h7cv-m349-g3xp: In the Linux kernel, the following vulnerability has been resolved:
i3c: mipi-i3c-hci: Fix out of bounds access in hci_dma_irq_handler
Do not loop o
In the Linux kernel, the following vulnerability has been resolved:
i3c: mipi-i3c-hci: Fix out of bounds access in hci_dma_irq_handler
Do not loop over ring headers in hci_dma_irq_handler() that are not
allocated and enabled in hci_dma_init(). Otherwise out of bounds access
will occur from rings->headers[i] access when i >= number of allocated
ring headers.
OSV
CVE-2023-52766: In the Linux kernel, the following vulnerability has been resolved: i3c: mipi-i3c-hci: Fix out of bounds access in hci_dma_irq_handler Do not loop ove
osv·2024-05-21·CVSS 7.1
CVE-2023-52766 [HIGH] CVE-2023-52766: In the Linux kernel, the following vulnerability has been resolved: i3c: mipi-i3c-hci: Fix out of bounds access in hci_dma_irq_handler Do not loop ove
In the Linux kernel, the following vulnerability has been resolved: i3c: mipi-i3c-hci: Fix out of bounds access in hci_dma_irq_handler Do not loop over ring headers in hci_dma_irq_handler() that are not allocated and enabled in hci_dma_init(). Otherwise out of bounds access will occur from rings->headers[i] access when i >= number of allocated ring headers.
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/45a832f989e520095429589d5b01b0c65da9b574https://git.kernel.org/stable/c/4c86cb2321bd9c72d3b945ce7f747961beda8e65https://git.kernel.org/stable/c/7c2b91b30d74d7c407118ad72502d4ca28af1af6https://git.kernel.org/stable/c/8be39f66915b40d26ea2c18ba84b5c3d5da6809bhttps://git.kernel.org/stable/c/d23ad76f240c0f597b7a9eb79905d246f27d40dfhttps://git.kernel.org/stable/c/45a832f989e520095429589d5b01b0c65da9b574https://git.kernel.org/stable/c/4c86cb2321bd9c72d3b945ce7f747961beda8e65https://git.kernel.org/stable/c/7c2b91b30d74d7c407118ad72502d4ca28af1af6https://git.kernel.org/stable/c/8be39f66915b40d26ea2c18ba84b5c3d5da6809bhttps://git.kernel.org/stable/c/d23ad76f240c0f597b7a9eb79905d246f27d40df
2024-05-21
Published