CVE-2023-34319

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
22/09/2023
Last modified:
04/11/2025

Description

The fix for XSA-423 added logic to Linux&amp;#39;es netback driver to deal with<br /> a frontend splitting a packet in a way such that not all of the headers<br /> would come in one piece. Unfortunately the logic introduced there<br /> didn&amp;#39;t account for the extreme case of the entire packet being split<br /> into as many pieces as permitted by the protocol, yet still being<br /> smaller than the area that&amp;#39;s specially dealt with to keep all (possible)<br /> headers together. Such an unusual packet would therefore trigger a<br /> buffer overrun in the driver.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:xen:xen:*:*:*:*:*:*:x86:* 3.2.0 (including)
cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 4.9.336 (including) 4.10 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 4.14.302 (including) 4.14.321 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 4.19.269 (including) 4.19.290 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.4.227 (including) 5.4.252 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.10.159 (including) 5.10.189 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.15.83 (including) 5.15.125 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.1.13 (including) 6.1.44 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.2 (including) 6.4.9 (excluding)