CVE-2023-53465

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
01/10/2025
Last modified:
20/01/2026

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> soundwire: qcom: fix storing port config out-of-bounds<br /> <br /> The &amp;#39;qcom_swrm_ctrl-&gt;pconfig&amp;#39; has size of QCOM_SDW_MAX_PORTS (14),<br /> however we index it starting from 1, not 0, to match real port numbers.<br /> This can lead to writing port config past &amp;#39;pconfig&amp;#39; bounds and<br /> overwriting next member of &amp;#39;qcom_swrm_ctrl&amp;#39; struct. Reported also by<br /> smatch:<br /> <br /> drivers/soundwire/qcom.c:1269 qcom_swrm_get_port_config() error: buffer overflow &amp;#39;ctrl-&gt;pconfig&amp;#39; 14

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.13 (including) 5.15.121 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.16 (including) 6.1.40 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.2 (including) 6.4.5 (excluding)