CVE Database
/

CVE-2023-52746

Back to search

CVE-2023-52746

Published: May 21, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: xfrm/compat: prevent potential spectre v1 gadget in xfrm_xlate32_attr() int type = nla_type(nla); if (type > XFRMA_MAX) { return -EOPNOTSUPP; } @type is then used as an array index and can be used as a Spectre v1 gadget. if (nla_len(nla) < compat_policy[type].len) { array_index_nospec() can be used to prevent leaking content of kernel memory to malicious users.

VendorProductVersions

Linux

Linux

affected
5106f4a8acff480e244300bc5097c0ad7048c3a2 - < a893cc644812728e86e9aff517fd5698812ecef0
affected
5106f4a8acff480e244300bc5097c0ad7048c3a2 - < 5dc688fae6b7be9dbbf5304a3d2520d038e06db5
affected
5106f4a8acff480e244300bc5097c0ad7048c3a2 - < 419674224390fca298020fc0751a20812f84b12d
affected
5106f4a8acff480e244300bc5097c0ad7048c3a2 - < b6ee896385380aa621102e8ea402ba12db1cabff

Linux

Linux

affected
5.10
unaffected
0 - < 5.10
unaffected
5.10.168 - <= 5.10.*
unaffected
5.15.94 - <= 5.15.*
unaffected
6.1.12 - <= 6.1.*

+1 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now