cbcvebase.
CVE-2023-54240
published 2025-12-30

CVE-2023-54240: In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mtk_eth_soc: fix possible NULL pointer dereference in…

PriorityP420
EPSS
0.18%
8.2th percentile
In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mtk_eth_soc: fix possible NULL pointer dereference in mtk_hwlro_get_fdir_all() rule_locs is allocated in ethtool_get_rxnfc and the size is determined by rule_cnt from user space. So rule_cnt needs to be check before using rule_locs to avoid NULL pointer dereference.

Affected

21 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.55-1 (bookworm)linux 6.1.55-1 (bookworm)
linuxlinux
linuxlinux>= 7aab747e5563ecbc9f3cb64ddea13fe7b9fee2bd < 7776591e5ae2befff86579f68916a171971c6aab7776591e5ae2befff86579f68916a171971c6aab
linuxlinux>= 7aab747e5563ecbc9f3cb64ddea13fe7b9fee2bd < 751b2e22a188b0c306029d094da29b6b8de31430751b2e22a188b0c306029d094da29b6b8de31430
linuxlinux>= 7aab747e5563ecbc9f3cb64ddea13fe7b9fee2bd < 653fbddbdfc6673bba01b13dae5a4384ad8f92ec653fbddbdfc6673bba01b13dae5a4384ad8f92ec
linuxlinux>= 7aab747e5563ecbc9f3cb64ddea13fe7b9fee2bd < 75f2de75c1182e80708c932418e4895dbc88b68f75f2de75c1182e80708c932418e4895dbc88b68f
linuxlinux>= 7aab747e5563ecbc9f3cb64ddea13fe7b9fee2bd < 072324cfab9b96071c0782f51f53cc5aea1e9d5b072324cfab9b96071c0782f51f53cc5aea1e9d5b
linuxlinux>= 7aab747e5563ecbc9f3cb64ddea13fe7b9fee2bd < ff5faed5f5487b0fd2b640ba1304f82a5ebaab42ff5faed5f5487b0fd2b640ba1304f82a5ebaab42
linuxlinux>= 7aab747e5563ecbc9f3cb64ddea13fe7b9fee2bd < fe0195fe48f85182bc7e7eabcad925bd3cbc10f5fe0195fe48f85182bc7e7eabcad925bd3cbc10f5
linuxlinux>= 7aab747e5563ecbc9f3cb64ddea13fe7b9fee2bd < e4c79810755f66c9a933ca810da2724133b1165ae4c79810755f66c9a933ca810da2724133b1165a
linuxlinux_kernel>= 0 < 5.10.197-15.10.197-1
linuxlinux_kernel>= 0 < 6.1.55-16.1.55-1
linuxlinux_kernel>= 0 < 6.5.6-16.5.6-1
linuxlinux_kernel>= 0 < 6.5.6-16.5.6-1
linuxlinux_kernel>= 4.15.0 < 4.19.2954.19.295
linuxlinux_kernel>= 4.20.0 < 5.4.2575.4.257
linuxlinux_kernel>= 4.9.0 < 4.14.3264.14.326
linuxlinux_kernel>= 5.11.0 < 5.15.1325.15.132
linuxlinux_kernel>= 5.16.0 < 6.1.546.1.54
linuxlinux_kernel>= 5.5.0 < 5.10.1955.10.195
linuxlinux_kernel>= 6.2.0 < 6.5.46.5.4
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.