Fix for Memory Overwrite Vulnerability in Linux kernel
CVE-2023-52916

7.8HIGH

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
6 September 2024

What is CVE-2023-52916?

A vulnerability in the Linux kernel related to media handling under OpenBMC can lead to a system crash when displaying at a resolution of 1600x900 if system memory usage is strained. This occurs during a specific sequence of operations: when the ISO is mounted through virtual media while simultaneously running a continuous SHA256 checksum script on the host. The issue manifests due to improper memory alignment, necessitating a fix to ensure stability during high-load scenarios.

Affected Version(s)

Linux d2b4387f3bdf016e266d23cf657465f557721488 < 4c823e4027dd1d6e88c31028dec13dd19bc7b02d

Linux d2b4387f3bdf016e266d23cf657465f557721488

Linux 5.0

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.