CVE-2023-53652 PUBLISHED

vdpa: Add features attr to vdpa_nl_policy for nlattr length check

Assigner: Linux
Reserved: 07.10.2025 Published: 07.10.2025 Updated: 07.10.2025

In the Linux kernel, the following vulnerability has been resolved:

vdpa: Add features attr to vdpa_nl_policy for nlattr length check

The vdpa_nl_policy structure is used to validate the nlattr when parsing the incoming nlmsg. It will ensure the attribute being described produces a valid nlattr pointer in info->attrs before entering into each handler in vdpa_nl_ops.

That is to say, the missing part in vdpa_nl_policy may lead to illegal nlattr after parsing, which could lead to OOB read just like CVE-2023-3773.

This patch adds the missing nla_policy for vdpa features attr to avoid such bugs.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 90fea5a800c3dd80fb8ad9a02929bcef5fde42b8 to 44b508cc96889e61799cc0fc6c00766a54f3ab5a (excl.)
  • affected from 90fea5a800c3dd80fb8ad9a02929bcef5fde42b8 to 645d17e06c502e71b880b2b854930e5a64014640 (excl.)
  • affected from 90fea5a800c3dd80fb8ad9a02929bcef5fde42b8 to 79c8651587504ba263d2fd67fd4406240fb21f69 (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 6.1 is affected
  • unaffected from 0 to 6.1 (excl.)
  • unaffected from 6.1.47 to 6.1.* (incl.)
  • unaffected from 6.4.12 to 6.4.* (incl.)
  • unaffected from 6.5 to * (incl.)

References