-

CVE-2023-53661

In the Linux kernel, the following vulnerability has been resolved:

bnxt: avoid overflow in bnxt_get_nvram_directory()

The value of an arithmetic expression is subject
of possible overflow due to a failure to cast operands to a larger data
type before performing arithmetic. Used macro for multiplication instead
operator for avoiding overflow.

Found by Security Code and Linux Verification
Center (linuxtesting.org) with SVACE.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
VendorLinux
Product Linux
Default Statusunaffected
Version < d5eaf2a6b077f32a477feb1e9e1c1f60605b460e
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < efb1a257513438d43f4335f09b2f684e8167cad2
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 17e0453a7523ad7a25bb47af941b150a6c66d7b6
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
Version < 7c6dddc239abe660598c49ec95ea0ed6399a4b2a
Version 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Status affected
VendorLinux
Product Linux
Default Statusaffected
Version <= 5.15.*
Version 5.15.113
Status unaffected
Version <= 6.1.*
Version 6.1.30
Status unaffected
Version <= 6.3.*
Version 6.3.4
Status unaffected
Version <= *
Version 6.4
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string