CVE-2023-53684
Published: Oct 7, 2025
Modified: May 11, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: xfrm: Zero padding when dumping algos and encap When copying data to user-space we should ensure that only valid data is copied over. Padding in structures may be filled with random (possibly sensitve) data and should never be given directly to user-space. This patch fixes the copying of xfrm algorithms and the encap template in xfrm_user so that padding is zeroed.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected c7a5899eb26e2a4d516d53f65b6dd67be2228041 - < 0725daaa9a879388ed312110f62dbd5ea2d75f8faffected c7a5899eb26e2a4d516d53f65b6dd67be2228041 - < 5218af4ad5d8948faac19f71583bcd786c3852dfaffected c7a5899eb26e2a4d516d53f65b6dd67be2228041 - < 1a351e26cc010d6991fbbd5701ac16581372e26faffected c7a5899eb26e2a4d516d53f65b6dd67be2228041 - < 8222d5910dae08213b6d9d4bc9a7f8502855e624 |
Linux | Linux | affected 5.11unaffected 0 - < 5.11unaffected 5.15.106 - <= 5.15.*unaffected 6.1.23 - <= 6.1.*unaffected 6.2.10 - <= 6.2.*+1 more versions |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now