CVE-2023-52453

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
23/02/2024
Last modified:
01/10/2025

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> hisi_acc_vfio_pci: Update migration data pointer correctly on saving/resume<br /> <br /> When the optional PRE_COPY support was added to speed up the device<br /> compatibility check, it failed to update the saving/resuming data<br /> pointers based on the fd offset. This results in migration data<br /> corruption and when the device gets started on the destination the<br /> following error is reported in some cases,<br /> <br /> [ 478.907684] arm-smmu-v3 arm-smmu-v3.2.auto: event 0x10 received:<br /> [ 478.913691] arm-smmu-v3 arm-smmu-v3.2.auto: 0x0000310200000010<br /> [ 478.919603] arm-smmu-v3 arm-smmu-v3.2.auto: 0x000002088000007f<br /> [ 478.925515] arm-smmu-v3 arm-smmu-v3.2.auto: 0x0000000000000000<br /> [ 478.931425] arm-smmu-v3 arm-smmu-v3.2.auto: 0x0000000000000000<br /> [ 478.947552] hisi_zip 0000:31:00.0: qm_axi_rresp [error status=0x1] found<br /> [ 478.955930] hisi_zip 0000:31:00.0: qm_db_timeout [error status=0x400] found<br /> [ 478.955944] hisi_zip 0000:31:00.0: qm sq doorbell timeout in function 2

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.2 (including) 6.6.14 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.7 (including) 6.7.2 (excluding)