CVE-2023-53080
published 2025-05-02CVE-2023-53080: In the Linux kernel, the following vulnerability has been resolved: xsk: Add missing overflow check in xdp_umem_reg The number of chunks can overflow u32. Make…
PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.21%
12.0th percentile
In the Linux kernel, the following vulnerability has been resolved:
xsk: Add missing overflow check in xdp_umem_reg
The number of chunks can overflow u32. Make sure to return -EINVAL on
overflow. Also remove a redundant u32 cast assigning umem->npgs.
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.25-1 (bookworm) | linux 6.1.25-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= bbff2f321a864ee07c9d3d1245af498023146951 < 580634b03a55f04a3c1968bcbd97736c079c6601 | 580634b03a55f04a3c1968bcbd97736c079c6601 |
| linux | linux | >= bbff2f321a864ee07c9d3d1245af498023146951 < 3cfc3564411acf96bf2fb791f706a1aa4f872c1d | 3cfc3564411acf96bf2fb791f706a1aa4f872c1d |
| linux | linux | >= bbff2f321a864ee07c9d3d1245af498023146951 < a069909acc4435eeb41d05ccc03baa447cc01b7e | a069909acc4435eeb41d05ccc03baa447cc01b7e |
| linux | linux | >= bbff2f321a864ee07c9d3d1245af498023146951 < bb2e3bfb2a79db0c2057c6f701b782954394c67f | bb2e3bfb2a79db0c2057c6f701b782954394c67f |
| linux | linux | >= bbff2f321a864ee07c9d3d1245af498023146951 < c7df4813b149362248d6ef7be41a311e27bf75fe | c7df4813b149362248d6ef7be41a311e27bf75fe |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 5.10.178-1 | 5.10.178-1 |
| linux | linux_kernel | >= 0 < 6.1.25-1 | 6.1.25-1 |
| linux | linux_kernel | >= 0 < 6.1.25-1 | 6.1.25-1 |
| linux | linux_kernel | >= 0 < 6.1.25-1 | 6.1.25-1 |
| linux | linux_kernel | >= 4.18 < 5.10.177 | 5.10.177 |
| linux | linux_kernel | >= 5.11 < 5.15.105 | 5.15.105 |
| linux | linux_kernel | >= 5.16 < 6.1.22 | 6.1.22 |
| linux | linux_kernel | >= 6.2 < 6.2.9 | 6.2.9 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: xsk: Add missing overflow check in xdp_umem_reg
vendor_redhat·2025-05-02·CVSS 5.5
CVE-2023-53080 [MEDIUM] kernel: xsk: Add missing overflow check in xdp_umem_reg
kernel: xsk: Add missing overflow check in xdp_umem_reg
In the Linux kernel, the following vulnerability has been resolved:
xsk: Add missing overflow check in xdp_umem_reg
The number of chunks can overflow u32. Make sure to return -EINVAL on
overflow. Also remove a redundant u32 cast assigning umem->npgs.
Statement: The issue fixes a missing overflow check in xdp_umem_reg() that could allow incorrect memory region registration. It requires privileged access and does not impact confidentiality or integrity, only potentially causing a local denial of service.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) -
Debian
CVE-2023-53080: linux - In the Linux kernel, the following vulnerability has been resolved: xsk: Add mi...
vendor_debian·2023·CVSS 5.5
CVE-2023-53080 [MEDIUM] CVE-2023-53080: linux - In the Linux kernel, the following vulnerability has been resolved: xsk: Add mi...
In the Linux kernel, the following vulnerability has been resolved: xsk: Add missing overflow check in xdp_umem_reg The number of chunks can overflow u32. Make sure to return -EINVAL on overflow. Also remove a redundant u32 cast assigning umem->npgs.
Scope: local
bookworm: resolved (fixed in 6.1.25-1)
bullseye: resolved (fixed in 5.10.178-1)
forky: resolved (fixed in 6.1.25-1)
sid: resolved (fixed in 6.1.25-1)
trixie: resolved (fixed in 6.1.25-1)
OSV
CVE-2023-53080: In the Linux kernel, the following vulnerability has been resolved: xsk: Add missing overflow check in xdp_umem_reg The number of chunks can overflow
osv·2025-05-02·CVSS 5.5
CVE-2023-53080 [MEDIUM] CVE-2023-53080: In the Linux kernel, the following vulnerability has been resolved: xsk: Add missing overflow check in xdp_umem_reg The number of chunks can overflow
In the Linux kernel, the following vulnerability has been resolved: xsk: Add missing overflow check in xdp_umem_reg The number of chunks can overflow u32. Make sure to return -EINVAL on overflow. Also remove a redundant u32 cast assigning umem->npgs.
GHSA
GHSA-6jq5-v5mp-qr69: In the Linux kernel, the following vulnerability has been resolved:
xsk: Add missing overflow check in xdp_umem_reg
The number of chunks can overflo
ghsa_unreviewed·2025-05-02
CVE-2023-53080 [MEDIUM] GHSA-6jq5-v5mp-qr69: In the Linux kernel, the following vulnerability has been resolved:
xsk: Add missing overflow check in xdp_umem_reg
The number of chunks can overflo
In the Linux kernel, the following vulnerability has been resolved:
xsk: Add missing overflow check in xdp_umem_reg
The number of chunks can overflow u32. Make sure to return -EINVAL on
overflow. Also remove a redundant u32 cast assigning umem->npgs.
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/3cfc3564411acf96bf2fb791f706a1aa4f872c1dhttps://git.kernel.org/stable/c/580634b03a55f04a3c1968bcbd97736c079c6601https://git.kernel.org/stable/c/a069909acc4435eeb41d05ccc03baa447cc01b7ehttps://git.kernel.org/stable/c/bb2e3bfb2a79db0c2057c6f701b782954394c67fhttps://git.kernel.org/stable/c/c7df4813b149362248d6ef7be41a311e27bf75fe
2025-05-02
Published