NONE · 0

CVE-2023-54057

In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Add a length limitation for the ivrs_acpihid command-line parameter The 'acpiid' buffer in the parse_ivrs_acpihid funct...

Vulnerability Description

In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Add a length limitation for the ivrs_acpihid command-line parameter The 'acpiid' buffer in the parse_ivrs_acpihid function may overflow, because the string specifier in the format string sscanf() has no width limitation. Found by InfoTeCS on behalf of Linux Verification Center (linuxtesting.org) with SVACE.

References

FAQ

What is CVE-2023-54057?

CVE-2023-54057 is a documented vulnerability. In the Linux kernel, the following vulnerability has been resolved: iommu/amd: Add a length limitation for the ivrs_acpihid command-line parameter The 'acpiid' buffer in the parse_ivrs_acpihid funct...

How severe is CVE-2023-54057?

CVSS scoring is not yet available for CVE-2023-54057. Check NVD for updates.

Is there a patch for CVE-2023-54057?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.