cbcvebase.
CVE-2023-53495
published 2025-10-01

CVE-2023-53495: In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mvpp2_main: fix possible OOB write in mvpp2_ethtool_get_rxnfc() rules is…

PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.15%
5.0th percentile
In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mvpp2_main: fix possible OOB write in mvpp2_ethtool_get_rxnfc() rules is allocated in ethtool_get_rxnfc and the size is determined by rule_cnt from user space. So rule_cnt needs to be check before using rules to avoid OOB writing or NULL pointer dereference.

Affected

18 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.55-1 (bookworm)linux 6.1.55-1 (bookworm)
linuxlinux
linuxlinux>= 90b509b39ac9b09be88eb641c7a3abd8de06b698 < ba6673824efa3dc198b04a54e69dce480066d7d9ba6673824efa3dc198b04a54e69dce480066d7d9
linuxlinux>= 90b509b39ac9b09be88eb641c7a3abd8de06b698 < 61054a8ddb176b155a8f2bacdfefb3727187f5d961054a8ddb176b155a8f2bacdfefb3727187f5d9
linuxlinux>= 90b509b39ac9b09be88eb641c7a3abd8de06b698 < 5bb09dddc724c5f7c4dc6dd3bfebd685eecd93e85bb09dddc724c5f7c4dc6dd3bfebd685eecd93e8
linuxlinux>= 90b509b39ac9b09be88eb641c7a3abd8de06b698 < 349638f7e5d3c7d328565587bb7b0454bbee02e2349638f7e5d3c7d328565587bb7b0454bbee02e2
linuxlinux>= 90b509b39ac9b09be88eb641c7a3abd8de06b698 < 625b70d31dd4df4b96b3ddcbe251debb33bd67f5625b70d31dd4df4b96b3ddcbe251debb33bd67f5
linuxlinux>= 90b509b39ac9b09be88eb641c7a3abd8de06b698 < 51fe0a470543f345e3c62b6798929de3ddcedc1d51fe0a470543f345e3c62b6798929de3ddcedc1d
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.197-15.10.197-1
linuxlinux_kernel>= 0 < 6.1.55-16.1.55-1
linuxlinux_kernel>= 0 < 6.5.6-16.5.6-1
linuxlinux_kernel>= 0 < 6.5.6-16.5.6-1
linuxlinux_kernel>= 5.11 < 5.15.1325.15.132
linuxlinux_kernel>= 5.16 < 6.1.546.1.54
linuxlinux_kernel>= 5.2 < 5.4.2575.4.257
linuxlinux_kernel>= 5.5 < 5.10.1955.10.195
linuxlinux_kernel>= 6.2 < 6.5.46.5.4

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.