CNNVD-202510-943 Information

CNNVD ID

CNNVD-202510-943

CVE-2023-53676

  • CNNVD Published: 2025-10-07

Description (Chinese)

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于lio_target_nacl_info_show函数使用sprintf循环打印iSCSI连接详情时未检查缓冲区长度,可能导致缓冲区溢出。

Description (English)

Linux Kernel is the kernel used by Linux, the Open Source Operator System of the Linux Foundation of the United States. There is a security loophole in Linux Kernel, which originates from the fact that the lio target nacl info show function does not check the length of the buffer zone when retrieving iSCSI with sprintf.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Linux

Published

2025-10-07

Last Modified

2026-02-24

References

https://git.kernel.org/stable/c/2cbe6a88fbdd6e8aeab358eef61472e2de43d6f6 https://git.kernel.org/stable/c/5353df78c22623b42a71d51226d228a8413097e2 https://git.kernel.org/stable/c/0cac6cbb9908309352a5d30c1876882771d3da50 https://git.kernel.org/stable/c/4738bf8b2d3635c2944b81b2a84d97b8c8b0978d https://git.kernel.org/stable/c/801f287c93ff95582b0a2d2163f12870a2f076d4 https://git.kernel.org/stable/c/bbe3ff47bf09db8956bc2eeb49d2d514d256ad2a https://git.kernel.org/stable/c/114b44dddea1f8f99576de3c0e6e9059012002fc https://git.kernel.org/stable/c/df349e84c2cb0dd05d98c8e1189c26ab4b116083 https://vigilance.fr/vulnerability/Linux-kernel-multiple-vulnerabilities-dated-07-10-2025-48407

Patch

https://www.kernel.org/

Share on: