CVE-2023-54312 — Incorrect Calculation of Buffer Size in Linux
Severity
2.5LOW
No vectorEPSS
0.0%
top 86.35%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 30
Description
In the Linux kernel, the following vulnerability has been resolved:
samples/bpf: Fix buffer overflow in tcp_basertt
Using sizeof(nv) or strlen(nv)+1 is correct.
Affected Packages4 packages
▶CVEListV5linux/linuxc890063e440456e75c2e70f6bcec3797f1771eb6 — cf7514fedc25675e68b74941df28a883951e70fd+8
🔴Vulnerability Details
3GHSA▶
GHSA-p36c-jp35-qgrh: In the Linux kernel, the following vulnerability has been resolved:
samples/bpf: Fix buffer overflow in tcp_basertt
Using sizeof(nv) or strlen(nv)+1↗2025-12-30
OSV▶
CVE-2023-54312: In the Linux kernel, the following vulnerability has been resolved: samples/bpf: Fix buffer overflow in tcp_basertt Using sizeof(nv) or strlen(nv)+1 i↗2025-12-30