CVE-2023-53397 — Off-by-one Error in Linux
Severity
5.5MEDIUMNVD
EPSS
0.0%
top 95.77%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 18
Description
In the Linux kernel, the following vulnerability has been resolved:
modpost: fix off by one in is_executable_section()
The > comparison should be >= to prevent an out of bounds array
access.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6
Affected Packages4 packages
▶CVEListV5linux/linux52dc0595d540155436d91811f929bdc8afd6a2a1 — 7ee557590bac154d324de446d1cd0444988bd511+8
Patches
🔴Vulnerability Details
2GHSA▶
GHSA-4c73-vgp7-gjq5: In the Linux kernel, the following vulnerability has been resolved:
modpost: fix off by one in is_executable_section()
The > comparison should be >=↗2025-09-18
OSV▶
CVE-2023-53397: In the Linux kernel, the following vulnerability has been resolved: modpost: fix off by one in is_executable_section() The > comparison should be >= t↗2025-09-18