CVE-2023-53657
published 2025-10-07CVE-2023-53657: In the Linux kernel, the following vulnerability has been resolved: ice: Don't tx before switchdev is fully configured There is possibility that…
PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.14%
4.1th percentile
In the Linux kernel, the following vulnerability has been resolved:
ice: Don't tx before switchdev is fully configured
There is possibility that ice_eswitch_port_start_xmit might be
called while some resources are still not allocated which might
cause NULL pointer dereference. Fix this by checking if switchdev
configuration was finished.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.55-1 (bookworm) | linux 6.1.55-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= f5396b8a663f7a78ee5b75a47ee524b40795b265 < 5760a72b3060150b587eff3e879648c7470efddd | 5760a72b3060150b587eff3e879648c7470efddd |
| linux | linux | >= f5396b8a663f7a78ee5b75a47ee524b40795b265 < 63ff5a94649837d980e3b9ef535c793ec8cb0ca7 | 63ff5a94649837d980e3b9ef535c793ec8cb0ca7 |
| linux | linux | >= f5396b8a663f7a78ee5b75a47ee524b40795b265 < 7aa529a69e92b9aff585e569d5003f7c15d8d60b | 7aa529a69e92b9aff585e569d5003f7c15d8d60b |
| linux | linux_kernel | >= 0 < 6.1.55-1 | 6.1.55-1 |
| linux | linux_kernel | >= 0 < 6.5.6-1 | 6.5.6-1 |
| linux | linux_kernel | >= 0 < 6.5.6-1 | 6.5.6-1 |
| linux | linux_kernel | >= 5.16 < 6.1.55 | 6.1.55 |
| linux | linux_kernel | >= 6.2 < 6.5.5 | 6.5.5 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: ice: Don't tx before switchdev is fully configured
vendor_redhat·2025-10-07·CVSS 5.5
CVE-2023-53657 [MEDIUM] CWE-367 kernel: ice: Don't tx before switchdev is fully configured
kernel: ice: Don't tx before switchdev is fully configured
In the Linux kernel, the following vulnerability has been resolved:
ice: Don't tx before switchdev is fully configured
There is possibility that ice_eswitch_port_start_xmit might be
called while some resources are still not allocated which might
cause NULL pointer dereference. Fix this by checking if switchdev
configuration was finished.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Fix deferred
Package: kernel-rt (Red Hat Enterprise Linux 9) - Fix deferred
Debian
CVE-2023-53657: linux - In the Linux kernel, the following vulnerability has been resolved: ice: Don't ...
vendor_debian·2023·CVSS 5.5
CVE-2023-53657 [MEDIUM] CVE-2023-53657: linux - In the Linux kernel, the following vulnerability has been resolved: ice: Don't ...
In the Linux kernel, the following vulnerability has been resolved: ice: Don't tx before switchdev is fully configured There is possibility that ice_eswitch_port_start_xmit might be called while some resources are still not allocated which might cause NULL pointer dereference. Fix this by checking if switchdev configuration was finished.
Scope: local
bookworm: resolved (fixed in 6.1.55-1)
bullseye: resolved
forky: resolved (fixed in 6.5.6-1)
sid: resolved (fixed in 6.5.6-1)
trixie: resolved (fixed in 6.5.6-1)
GHSA
GHSA-3cqg-r9w7-gjfg: In the Linux kernel, the following vulnerability has been resolved:
ice: Don't tx before switchdev is fully configured
There is possibility that ice
ghsa_unreviewed·2025-10-07
CVE-2023-53657 [MEDIUM] CWE-476 GHSA-3cqg-r9w7-gjfg: In the Linux kernel, the following vulnerability has been resolved:
ice: Don't tx before switchdev is fully configured
There is possibility that ice
In the Linux kernel, the following vulnerability has been resolved:
ice: Don't tx before switchdev is fully configured
There is possibility that ice_eswitch_port_start_xmit might be
called while some resources are still not allocated which might
cause NULL pointer dereference. Fix this by checking if switchdev
configuration was finished.
OSV
CVE-2023-53657: In the Linux kernel, the following vulnerability has been resolved: ice: Don't tx before switchdev is fully configured There is possibility that ice_e
osv·2025-10-07·CVSS 5.5
CVE-2023-53657 [MEDIUM] CVE-2023-53657: In the Linux kernel, the following vulnerability has been resolved: ice: Don't tx before switchdev is fully configured There is possibility that ice_e
In the Linux kernel, the following vulnerability has been resolved: ice: Don't tx before switchdev is fully configured There is possibility that ice_eswitch_port_start_xmit might be called while some resources are still not allocated which might cause NULL pointer dereference. Fix this by checking if switchdev configuration was finished.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-10-07
Published