CVE-2023-52683

In the Linux kernel, the following vulnerability has been resolved: ACPI: LPIT: Avoid u32 multiplication overflow In lpit_update_residency() there is a possibility of overflow in multiplication, if tsc_khz is large enough (> UINT_MAX/1000). Change multiplication to mul_u32_u32(). Found by Linux Verification Center (linuxtesting.org) with SVACE.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*

History

17 Dec 2025, 03:43

Type Values Removed Values Added
References () https://git.kernel.org/stable/c/56d2eeda87995245300836ee4dbd13b002311782 - () https://git.kernel.org/stable/c/56d2eeda87995245300836ee4dbd13b002311782 - Patch
References () https://git.kernel.org/stable/c/647d1d50c31e60ef9ccb9756a8fdf863329f7aee - () https://git.kernel.org/stable/c/647d1d50c31e60ef9ccb9756a8fdf863329f7aee - Patch
References () https://git.kernel.org/stable/c/6c38e791bde07d6ca2a0a619ff9b6837e0d5f9ad - () https://git.kernel.org/stable/c/6c38e791bde07d6ca2a0a619ff9b6837e0d5f9ad - Patch
References () https://git.kernel.org/stable/c/72222dfd76a79d9666ab3117fcdd44ca8cd0c4de - () https://git.kernel.org/stable/c/72222dfd76a79d9666ab3117fcdd44ca8cd0c4de - Patch
References () https://git.kernel.org/stable/c/b7aab9d906e2e252a7783f872406033ec49b6dae - () https://git.kernel.org/stable/c/b7aab9d906e2e252a7783f872406033ec49b6dae - Patch
References () https://git.kernel.org/stable/c/c1814a4ffd016ce5392c6767d22ef3aa2f0d4bd1 - () https://git.kernel.org/stable/c/c1814a4ffd016ce5392c6767d22ef3aa2f0d4bd1 - Patch
References () https://git.kernel.org/stable/c/d1ac288b2742aa4af746c5613bac71760fadd1c4 - () https://git.kernel.org/stable/c/d1ac288b2742aa4af746c5613bac71760fadd1c4 - Patch
References () https://git.kernel.org/stable/c/f39c3d578c7d09a18ceaf56750fc7f20b02ada63 - () https://git.kernel.org/stable/c/f39c3d578c7d09a18ceaf56750fc7f20b02ada63 - Patch
References () https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html - () https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html - Third Party Advisory, Mailing List
References () https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html - () https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html - Third Party Advisory, Mailing List
CWE NVD-CWE-noinfo
First Time Linux
Debian
Debian debian Linux
Linux linux Kernel
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CPE cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

21 Nov 2024, 08:40

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html -
  • () https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html -
References () https://git.kernel.org/stable/c/56d2eeda87995245300836ee4dbd13b002311782 - () https://git.kernel.org/stable/c/56d2eeda87995245300836ee4dbd13b002311782 -
References () https://git.kernel.org/stable/c/647d1d50c31e60ef9ccb9756a8fdf863329f7aee - () https://git.kernel.org/stable/c/647d1d50c31e60ef9ccb9756a8fdf863329f7aee -
References () https://git.kernel.org/stable/c/6c38e791bde07d6ca2a0a619ff9b6837e0d5f9ad - () https://git.kernel.org/stable/c/6c38e791bde07d6ca2a0a619ff9b6837e0d5f9ad -
References () https://git.kernel.org/stable/c/72222dfd76a79d9666ab3117fcdd44ca8cd0c4de - () https://git.kernel.org/stable/c/72222dfd76a79d9666ab3117fcdd44ca8cd0c4de -
References () https://git.kernel.org/stable/c/b7aab9d906e2e252a7783f872406033ec49b6dae - () https://git.kernel.org/stable/c/b7aab9d906e2e252a7783f872406033ec49b6dae -
References () https://git.kernel.org/stable/c/c1814a4ffd016ce5392c6767d22ef3aa2f0d4bd1 - () https://git.kernel.org/stable/c/c1814a4ffd016ce5392c6767d22ef3aa2f0d4bd1 -
References () https://git.kernel.org/stable/c/d1ac288b2742aa4af746c5613bac71760fadd1c4 - () https://git.kernel.org/stable/c/d1ac288b2742aa4af746c5613bac71760fadd1c4 -
References () https://git.kernel.org/stable/c/f39c3d578c7d09a18ceaf56750fc7f20b02ada63 - () https://git.kernel.org/stable/c/f39c3d578c7d09a18ceaf56750fc7f20b02ada63 -

04 Nov 2024, 13:16

Type Values Removed Values Added
References
  • {'url': 'https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html', 'source': '416baaa9-dc9f-4396-8d5f-8c081fb06d67'}
  • {'url': 'https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html', 'source': '416baaa9-dc9f-4396-8d5f-8c081fb06d67'}

27 Jun 2024, 12:15

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2024/06/msg00020.html -

25 Jun 2024, 21:15

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2024/06/msg00016.html -
Summary
  • (es) En el kernel de Linux se ha resuelto la siguiente vulnerabilidad: ACPI: LPIT: Evitar desbordamiento de multiplicación u32 En lpit_update_residency() existe la posibilidad de desbordamiento en la multiplicación, si tsc_khz es lo suficientemente grande (> UINT_MAX/1000). Cambie la multiplicación a mul_u32_u32(). Encontrado por el Centro de verificación de Linux (linuxtesting.org) con SVACE.

17 May 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-17 15:15

Updated : 2025-12-17 03:43


NVD link : CVE-2023-52683

Mitre link : CVE-2023-52683

CVE.ORG link : CVE-2023-52683


JSON object : View

Products Affected

debian

  • debian_linux

linux

  • linux_kernel