CVE-2023-52834

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
21/05/2024
Last modified:
21/05/2024

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> atl1c: Work around the DMA RX overflow issue<br /> <br /> This is based on alx driver commit 881d0327db37 ("net: alx: Work around<br /> the DMA RX overflow issue").<br /> <br /> The alx and atl1c drivers had RX overflow error which was why a custom<br /> allocator was created to avoid certain addresses. The simpler workaround<br /> then created for alx driver, but not for atl1c due to lack of tester.<br /> <br /> Instead of using a custom allocator, check the allocated skb address and<br /> use skb_reserve() to move away from problematic 0x...fc0 address.<br /> <br /> Tested on AR8131 on Acer 4540.

Impact