cbcvebase.
CVE-2023-53080
published 2025-05-02

CVE-2023-53080: In the Linux kernel, the following vulnerability has been resolved: xsk: Add missing overflow check in xdp_umem_reg The number of chunks can overflow u32. Make…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.21%
12.0th percentile
In the Linux kernel, the following vulnerability has been resolved: xsk: Add missing overflow check in xdp_umem_reg The number of chunks can overflow u32. Make sure to return -EINVAL on overflow. Also remove a redundant u32 cast assigning umem->npgs.

Affected

18 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.25-1 (bookworm)linux 6.1.25-1 (bookworm)
linuxlinux
linuxlinux>= bbff2f321a864ee07c9d3d1245af498023146951 < 580634b03a55f04a3c1968bcbd97736c079c6601580634b03a55f04a3c1968bcbd97736c079c6601
linuxlinux>= bbff2f321a864ee07c9d3d1245af498023146951 < 3cfc3564411acf96bf2fb791f706a1aa4f872c1d3cfc3564411acf96bf2fb791f706a1aa4f872c1d
linuxlinux>= bbff2f321a864ee07c9d3d1245af498023146951 < a069909acc4435eeb41d05ccc03baa447cc01b7ea069909acc4435eeb41d05ccc03baa447cc01b7e
linuxlinux>= bbff2f321a864ee07c9d3d1245af498023146951 < bb2e3bfb2a79db0c2057c6f701b782954394c67fbb2e3bfb2a79db0c2057c6f701b782954394c67f
linuxlinux>= bbff2f321a864ee07c9d3d1245af498023146951 < c7df4813b149362248d6ef7be41a311e27bf75fec7df4813b149362248d6ef7be41a311e27bf75fe
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.25-16.1.25-1
linuxlinux_kernel>= 0 < 6.1.25-16.1.25-1
linuxlinux_kernel>= 0 < 6.1.25-16.1.25-1
linuxlinux_kernel>= 4.18 < 5.10.1775.10.177
linuxlinux_kernel>= 5.11 < 5.15.1055.15.105
linuxlinux_kernel>= 5.16 < 6.1.226.1.22
linuxlinux_kernel>= 6.2 < 6.2.96.2.9

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.