cbcvebase.
CVE-2023-53535
published 2025-10-04

CVE-2023-53535: In the Linux kernel, the following vulnerability has been resolved: net: bcmgenet: Add a check for oversized packets Occasionnaly we may get oversized packets…

PriorityP421medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.21%
11.9th percentile
In the Linux kernel, the following vulnerability has been resolved: net: bcmgenet: Add a check for oversized packets Occasionnaly we may get oversized packets from the hardware which exceed the nomimal 2KiB buffer size we allocate SKBs with. Add an early check which drops the packet to avoid invoking skb_over_panic() and move on to processing the next packet.

Affected

21 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.20-1 (bookworm)linux 6.1.20-1 (bookworm)
linuxlinux
linuxlinux>= 1c1008c793fa46703a2fee469f4235e1c7984333 < 7cdb07e10c1258c08f31b24898930e4ece88d1637cdb07e10c1258c08f31b24898930e4ece88d163
linuxlinux>= 1c1008c793fa46703a2fee469f4235e1c7984333 < c34b1c0870323649d45c5074828d7f754dea2673c34b1c0870323649d45c5074828d7f754dea2673
linuxlinux>= 1c1008c793fa46703a2fee469f4235e1c7984333 < 87363d1ab55e497702a9506ff423c422639c8a2587363d1ab55e497702a9506ff423c422639c8a25
linuxlinux>= 1c1008c793fa46703a2fee469f4235e1c7984333 < 841881320562cbeac7046b537b91cd000480cea2841881320562cbeac7046b537b91cd000480cea2
linuxlinux>= 1c1008c793fa46703a2fee469f4235e1c7984333 < 124ca24e0de958d2e20e0aa1e2434af7b72f8887124ca24e0de958d2e20e0aa1e2434af7b72f8887
linuxlinux>= 1c1008c793fa46703a2fee469f4235e1c7984333 < 5f56767fb5f2df875b6553e08dbec6a45431c9885f56767fb5f2df875b6553e08dbec6a45431c988
linuxlinux>= 1c1008c793fa46703a2fee469f4235e1c7984333 < 411317d2a4a7d6049d8efeef0d32ae43f8baefce411317d2a4a7d6049d8efeef0d32ae43f8baefce
linuxlinux>= 1c1008c793fa46703a2fee469f4235e1c7984333 < 5c0862c2c962052ed5055220a00ac1cefb92fbcd5c0862c2c962052ed5055220a00ac1cefb92fbcd
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 3.15 < 4.14.3084.14.308
linuxlinux_kernel>= 4.15 < 4.19.2764.19.276
linuxlinux_kernel>= 4.20 < 5.4.2355.4.235
linuxlinux_kernel>= 5.11 < 5.15.995.15.99
linuxlinux_kernel>= 5.16 < 6.1.166.1.16
linuxlinux_kernel>= 5.5 < 5.10.1735.10.173
linuxlinux_kernel>= 6.2 < 6.2.36.2.3

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.