In the Linux kernel, the following vulnerability has been resolved:
net/mlx5: E-Switch, Fix an Oops in error handling code
The error handling dereferences "vport". There is nothing we can do if it is an error pointer except returning the error code.
{
"cna_assigner": "Linux",
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/53xxx/CVE-2023-53058.json"
}[
{
"digest": {
"length": 467.0,
"function_hash": "96999389644102675367199813740513367969"
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Function",
"id": "CVE-2023-53058-139cb338",
"target": {
"function": "mlx5_esw_acl_ingress_vport_bond_update",
"file": "drivers/net/ethernet/mellanox/mlx5/core/esw/acl/ingress_ofld.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@388188fb58bef9e7f3ca4f8970f03d493b66909f"
},
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"88978276787270675123316778039705163227",
"282117797815501418113127747572251423314",
"183264882161055365557137093060443635572",
"328516011684511628551697862837549530087",
"308941284862132285092441369300299198514"
]
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Line",
"id": "CVE-2023-53058-ddd7cfd6",
"target": {
"file": "drivers/net/ethernet/mellanox/mlx5/core/esw/acl/ingress_ofld.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@388188fb58bef9e7f3ca4f8970f03d493b66909f"
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-53058.json"