In the Linux kernel, the following vulnerability has been resolved:
net: usb: smsc95xx: Limit packet length to skb->len
Packet length retrieved from descriptor may be larger than the actual socket buffer length. In such case the cloned skb passed up the network stack will leak kernel memory contents.
{
"cna_assigner": "Linux",
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/53xxx/CVE-2023-53062.json"
}[
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"106301950685047043950405695165047299236",
"185002851085267515160702002845768588227",
"97047502227088943997944122432424219466"
]
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ff821092cf02a70c2bccd2d19269f01e29aa52cf",
"deprecated": false,
"id": "CVE-2023-53062-27a1527a",
"signature_type": "Line",
"target": {
"file": "drivers/net/usb/smsc95xx.c"
},
"signature_version": "v1"
},
{
"digest": {
"length": 1736.0,
"function_hash": "154107536083124163140421854722780056179"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@733580e268a53db1cd01f2251419da91866378f6",
"deprecated": false,
"id": "CVE-2023-53062-3315bc26",
"signature_type": "Function",
"target": {
"function": "smsc95xx_rx_fixup",
"file": "drivers/net/usb/smsc95xx.c"
},
"signature_version": "v1"
},
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"106301950685047043950405695165047299236",
"185002851085267515160702002845768588227",
"97047502227088943997944122432424219466"
]
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@d3c145a4d24b752c9a1314d5a595014d51471418",
"deprecated": false,
"id": "CVE-2023-53062-456b7d65",
"signature_type": "Line",
"target": {
"file": "drivers/net/usb/smsc95xx.c"
},
"signature_version": "v1"
},
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"106301950685047043950405695165047299236",
"185002851085267515160702002845768588227",
"97047502227088943997944122432424219466"
]
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@70eb25c6a6cde149affe8a587371a3a8ad295ba0",
"deprecated": false,
"id": "CVE-2023-53062-4fcbe3ca",
"signature_type": "Line",
"target": {
"file": "drivers/net/usb/smsc95xx.c"
},
"signature_version": "v1"
},
{
"digest": {
"length": 1696.0,
"function_hash": "148262988062653617585247730977318161130"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@e041bef1adee02999cf24f9a2e15ed452bc363fe",
"deprecated": false,
"id": "CVE-2023-53062-625b4fcd",
"signature_type": "Function",
"target": {
"function": "smsc95xx_rx_fixup",
"file": "drivers/net/usb/smsc95xx.c"
},
"signature_version": "v1"
},
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"106301950685047043950405695165047299236",
"185002851085267515160702002845768588227",
"97047502227088943997944122432424219466"
]
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@733580e268a53db1cd01f2251419da91866378f6",
"deprecated": false,
"id": "CVE-2023-53062-685197d0",
"signature_type": "Line",
"target": {
"file": "drivers/net/usb/smsc95xx.c"
},
"signature_version": "v1"
},
{
"digest": {
"length": 1696.0,
"function_hash": "148262988062653617585247730977318161130"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@70eb25c6a6cde149affe8a587371a3a8ad295ba0",
"deprecated": false,
"id": "CVE-2023-53062-a51cb3dd",
"signature_type": "Function",
"target": {
"function": "smsc95xx_rx_fixup",
"file": "drivers/net/usb/smsc95xx.c"
},
"signature_version": "v1"
},
{
"digest": {
"length": 1696.0,
"function_hash": "148262988062653617585247730977318161130"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ba6c40227108f8ee428e42eb0337b48ed3001e65",
"deprecated": false,
"id": "CVE-2023-53062-a98bd3e5",
"signature_type": "Function",
"target": {
"function": "smsc95xx_rx_fixup",
"file": "drivers/net/usb/smsc95xx.c"
},
"signature_version": "v1"
},
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"106301950685047043950405695165047299236",
"185002851085267515160702002845768588227",
"97047502227088943997944122432424219466"
]
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@e041bef1adee02999cf24f9a2e15ed452bc363fe",
"deprecated": false,
"id": "CVE-2023-53062-bdd750c4",
"signature_type": "Line",
"target": {
"file": "drivers/net/usb/smsc95xx.c"
},
"signature_version": "v1"
},
{
"digest": {
"length": 1696.0,
"function_hash": "148262988062653617585247730977318161130"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ff821092cf02a70c2bccd2d19269f01e29aa52cf",
"deprecated": false,
"id": "CVE-2023-53062-ccc87dfb",
"signature_type": "Function",
"target": {
"function": "smsc95xx_rx_fixup",
"file": "drivers/net/usb/smsc95xx.c"
},
"signature_version": "v1"
},
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"106301950685047043950405695165047299236",
"185002851085267515160702002845768588227",
"97047502227088943997944122432424219466"
]
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ba6c40227108f8ee428e42eb0337b48ed3001e65",
"deprecated": false,
"id": "CVE-2023-53062-da4085f0",
"signature_type": "Line",
"target": {
"file": "drivers/net/usb/smsc95xx.c"
},
"signature_version": "v1"
},
{
"digest": {
"length": 1736.0,
"function_hash": "154107536083124163140421854722780056179"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@d3c145a4d24b752c9a1314d5a595014d51471418",
"deprecated": false,
"id": "CVE-2023-53062-f54e63a8",
"signature_type": "Function",
"target": {
"function": "smsc95xx_rx_fixup",
"file": "drivers/net/usb/smsc95xx.c"
},
"signature_version": "v1"
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-53062.json"