In the Linux kernel, the following vulnerability has been resolved:
net: usb: smsc95xx: Limit packet length to skb->len
Packet length retrieved from descriptor may be larger than the actual socket buffer length. In such case the cloned skb passed up the network stack will leak kernel memory contents.
[
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"106301950685047043950405695165047299236",
"185002851085267515160702002845768588227",
"97047502227088943997944122432424219466"
]
},
"target": {
"file": "drivers/net/usb/smsc95xx.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ff821092cf02a70c2bccd2d19269f01e29aa52cf",
"id": "CVE-2023-53062-27a1527a",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "154107536083124163140421854722780056179",
"length": 1736.0
},
"target": {
"file": "drivers/net/usb/smsc95xx.c",
"function": "smsc95xx_rx_fixup"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@733580e268a53db1cd01f2251419da91866378f6",
"id": "CVE-2023-53062-3315bc26",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "148262988062653617585247730977318161130",
"length": 1696.0
},
"target": {
"file": "drivers/net/usb/smsc95xx.c",
"function": "smsc95xx_rx_fixup"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@33d1603a38e05886c538129ddfe00bd52d347e7b",
"id": "CVE-2023-53062-383a5d22",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"106301950685047043950405695165047299236",
"185002851085267515160702002845768588227",
"97047502227088943997944122432424219466"
]
},
"target": {
"file": "drivers/net/usb/smsc95xx.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@d3c145a4d24b752c9a1314d5a595014d51471418",
"id": "CVE-2023-53062-456b7d65",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"106301950685047043950405695165047299236",
"185002851085267515160702002845768588227",
"97047502227088943997944122432424219466"
]
},
"target": {
"file": "drivers/net/usb/smsc95xx.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@70eb25c6a6cde149affe8a587371a3a8ad295ba0",
"id": "CVE-2023-53062-4fcbe3ca",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "148262988062653617585247730977318161130",
"length": 1696.0
},
"target": {
"file": "drivers/net/usb/smsc95xx.c",
"function": "smsc95xx_rx_fixup"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@e041bef1adee02999cf24f9a2e15ed452bc363fe",
"id": "CVE-2023-53062-625b4fcd",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"106301950685047043950405695165047299236",
"185002851085267515160702002845768588227",
"97047502227088943997944122432424219466"
]
},
"target": {
"file": "drivers/net/usb/smsc95xx.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@733580e268a53db1cd01f2251419da91866378f6",
"id": "CVE-2023-53062-685197d0",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"106301950685047043950405695165047299236",
"185002851085267515160702002845768588227",
"97047502227088943997944122432424219466"
]
},
"target": {
"file": "drivers/net/usb/smsc95xx.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f2111c791d885211714db85f9a06188571c57dd0",
"id": "CVE-2023-53062-8b225a43",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "148262988062653617585247730977318161130",
"length": 1696.0
},
"target": {
"file": "drivers/net/usb/smsc95xx.c",
"function": "smsc95xx_rx_fixup"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@70eb25c6a6cde149affe8a587371a3a8ad295ba0",
"id": "CVE-2023-53062-a51cb3dd",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "148262988062653617585247730977318161130",
"length": 1696.0
},
"target": {
"file": "drivers/net/usb/smsc95xx.c",
"function": "smsc95xx_rx_fixup"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ba6c40227108f8ee428e42eb0337b48ed3001e65",
"id": "CVE-2023-53062-a98bd3e5",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"106301950685047043950405695165047299236",
"185002851085267515160702002845768588227",
"97047502227088943997944122432424219466"
]
},
"target": {
"file": "drivers/net/usb/smsc95xx.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@e041bef1adee02999cf24f9a2e15ed452bc363fe",
"id": "CVE-2023-53062-bdd750c4",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"106301950685047043950405695165047299236",
"185002851085267515160702002845768588227",
"97047502227088943997944122432424219466"
]
},
"target": {
"file": "drivers/net/usb/smsc95xx.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@33d1603a38e05886c538129ddfe00bd52d347e7b",
"id": "CVE-2023-53062-c3d2ee6b",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "148262988062653617585247730977318161130",
"length": 1696.0
},
"target": {
"file": "drivers/net/usb/smsc95xx.c",
"function": "smsc95xx_rx_fixup"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f2111c791d885211714db85f9a06188571c57dd0",
"id": "CVE-2023-53062-c629d4a9",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "148262988062653617585247730977318161130",
"length": 1696.0
},
"target": {
"file": "drivers/net/usb/smsc95xx.c",
"function": "smsc95xx_rx_fixup"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ff821092cf02a70c2bccd2d19269f01e29aa52cf",
"id": "CVE-2023-53062-ccc87dfb",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"106301950685047043950405695165047299236",
"185002851085267515160702002845768588227",
"97047502227088943997944122432424219466"
]
},
"target": {
"file": "drivers/net/usb/smsc95xx.c"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@ba6c40227108f8ee428e42eb0337b48ed3001e65",
"id": "CVE-2023-53062-da4085f0",
"deprecated": false,
"signature_version": "v1"
},
{
"signature_type": "Function",
"digest": {
"function_hash": "154107536083124163140421854722780056179",
"length": 1736.0
},
"target": {
"file": "drivers/net/usb/smsc95xx.c",
"function": "smsc95xx_rx_fixup"
},
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@d3c145a4d24b752c9a1314d5a595014d51471418",
"id": "CVE-2023-53062-f54e63a8",
"deprecated": false,
"signature_version": "v1"
}
]