vulnerability
Ubuntu: (CVE-2023-53062): linux vulnerability
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
6 | (AV:L/AC:L/Au:S/C:C/I:N/A:C) | May 2, 2025 | May 8, 2025 | Jun 12, 2025 |
Severity
6
CVSS
(AV:L/AC:L/Au:S/C:C/I:N/A:C)
Published
May 2, 2025
Added
May 8, 2025
Modified
Jun 12, 2025
Description
In the Linux kernel, the following vulnerability has been resolved:
net: usb: smsc95xx: Limit packet length to skb->len
Packet length retrieved from descriptor may be larger than
the actual socket buffer length. In such case the cloned
skb passed up the network stack will leak kernel memory contents.
Solution(s)
ubuntu-upgrade-linuxubuntu-upgrade-linux-awsubuntu-upgrade-linux-aws-5-15ubuntu-upgrade-linux-aws-5-4ubuntu-upgrade-linux-aws-fipsubuntu-upgrade-linux-azureubuntu-upgrade-linux-azure-5-15ubuntu-upgrade-linux-azure-5-4ubuntu-upgrade-linux-azure-fipsubuntu-upgrade-linux-bluefieldubuntu-upgrade-linux-fipsubuntu-upgrade-linux-gcpubuntu-upgrade-linux-gcp-5-15ubuntu-upgrade-linux-gcp-5-4ubuntu-upgrade-linux-gcp-fipsubuntu-upgrade-linux-gkeubuntu-upgrade-linux-gkeopubuntu-upgrade-linux-hwe-5-15ubuntu-upgrade-linux-hwe-5-4ubuntu-upgrade-linux-ibmubuntu-upgrade-linux-ibm-5-15ubuntu-upgrade-linux-ibm-5-4ubuntu-upgrade-linux-intel-iot-realtimeubuntu-upgrade-linux-intel-iotgubuntu-upgrade-linux-intel-iotg-5-15ubuntu-upgrade-linux-iotubuntu-upgrade-linux-kvmubuntu-upgrade-linux-lowlatencyubuntu-upgrade-linux-lowlatency-hwe-5-15ubuntu-upgrade-linux-nvidiaubuntu-upgrade-linux-nvidia-tegraubuntu-upgrade-linux-nvidia-tegra-5-15ubuntu-upgrade-linux-nvidia-tegra-igxubuntu-upgrade-linux-oracleubuntu-upgrade-linux-oracle-5-15ubuntu-upgrade-linux-oracle-5-4ubuntu-upgrade-linux-raspiubuntu-upgrade-linux-raspi-5-4ubuntu-upgrade-linux-realtimeubuntu-upgrade-linux-riscv-5-15ubuntu-upgrade-linux-xilinx-zynqmp
References
- CVE-2023-53062
- https://attackerkb.com/topics/CVE-2023-53062
- URL-https://git.kernel.org/linus/ff821092cf02a70c2bccd2d19269f01e29aa52cf
- URL-https://git.kernel.org/stable/c/33d1603a38e05886c538129ddfe00bd52d347e7b
- URL-https://git.kernel.org/stable/c/70eb25c6a6cde149affe8a587371a3a8ad295ba0
- URL-https://git.kernel.org/stable/c/733580e268a53db1cd01f2251419da91866378f6
- URL-https://git.kernel.org/stable/c/ba6c40227108f8ee428e42eb0337b48ed3001e65
- URL-https://git.kernel.org/stable/c/d3c145a4d24b752c9a1314d5a595014d51471418
- URL-https://git.kernel.org/stable/c/e041bef1adee02999cf24f9a2e15ed452bc363fe
- URL-https://git.kernel.org/stable/c/f2111c791d885211714db85f9a06188571c57dd0
- URL-https://git.kernel.org/stable/c/ff821092cf02a70c2bccd2d19269f01e29aa52cf
- URL-https://www.cve.org/CVERecord?id=CVE-2023-53062

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.