NA

CVE-2023-52429

Published: 12/02/2024 Updated: 26/02/2024
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

dm_table_create in drivers/md/dm-table.c in the Linux kernel up to and including 6.7.4 can attempt to (in alloc_targets) allocate more than INT_MAX bytes, and crash, because of a missing check for struct dm_ioctl.target_count.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

fedoraproject fedora 38

fedoraproject fedora 39

Vendor Advisories

Description<!---->A flaw was found in the md driver in the linux kernel Due to a missing check for struct dm_ioctltarget_count, dm_table_create can attempt to allocate more bytes than intended, resulting in a crashA flaw was found in the md driver in the linux kernel Due to a missing check for struct dm_ioctltarget_count, dm_table_create can a ...
dm_table_create in drivers/md/dm-tablec in the Linux kernel through 674 can attempt to (in alloc_targets) allocate more than INT_MAX bytes, and crash, because of a missing check for struct dm_ioctltarget_count (CVE-2023-52429) A flaw was found in the ATA over Ethernet (AoE) driver in the Linux kernel The aoecmd_cfg_pkts() function improperly ...
dm_table_create in drivers/md/dm-tablec in the Linux kernel through 674 can attempt to (in alloc_targets) allocate more than INT_MAX bytes, and crash, because of a missing check for struct dm_ioctltarget_count (CVE-2023-52429) A vulnerability was reported in the Open vSwitch sub-component in the Linux Kernel The flaw occurs when a recursive o ...
dm_table_create in drivers/md/dm-tablec in the Linux kernel through 674 can attempt to (in alloc_targets) allocate more than INT_MAX bytes, and crash, because of a missing check for struct dm_ioctltarget_count (CVE-2023-52429) In the Linux kernel, the following vulnerability has been resolved: net: prevent mss overflow in skb_segment() Once ag ...
dm_table_create in drivers/md/dm-tablec in the Linux kernel through 674 can attempt to (in alloc_targets) allocate more than INT_MAX bytes, and crash, because of a missing check for struct dm_ioctltarget_count (CVE-2023-52429) In the Linux kernel, the following vulnerability has been resolved: net: prevent mss overflow in skb_segment() Once ag ...