CVE-2023-53465

In the Linux kernel, the following vulnerability has been resolved: soundwire: qcom: fix storing port config out-of-bounds The 'qcom_swrm_ctrl->pconfig' has size of QCOM_SDW_MAX_PORTS (14), however we index it starting from 1, not 0, to match real port numbers. This can lead to writing port config past 'pconfig' bounds and overwriting next member of 'qcom_swrm_ctrl' struct. Reported also by smatch: drivers/soundwire/qcom.c:1269 qcom_swrm_get_port_config() error: buffer overflow 'ctrl->pconfig' 14 <= 14
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

20 Jan 2026, 15:54

Type Values Removed Values Added
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
CWE CWE-125
First Time Linux
Linux linux Kernel
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.1
References () https://git.kernel.org/stable/c/20f7c4d51c94abb1a1a7c21900db4fb5afe5c8ff - () https://git.kernel.org/stable/c/20f7c4d51c94abb1a1a7c21900db4fb5afe5c8ff - Patch
References () https://git.kernel.org/stable/c/32eb67d7360d48c15883e0d21b29c0aab9da022e - () https://git.kernel.org/stable/c/32eb67d7360d48c15883e0d21b29c0aab9da022e - Patch
References () https://git.kernel.org/stable/c/490937d479abe5f6584e69b96df066bc87be92e9 - () https://git.kernel.org/stable/c/490937d479abe5f6584e69b96df066bc87be92e9 - Patch
References () https://git.kernel.org/stable/c/801daff0078087b5df9145c9f5e643c28129734b - () https://git.kernel.org/stable/c/801daff0078087b5df9145c9f5e643c28129734b - Patch

01 Oct 2025, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-10-01 12:15

Updated : 2026-01-20 15:54


NVD link : CVE-2023-53465

Mitre link : CVE-2023-53465

CVE.ORG link : CVE-2023-53465


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-125

Out-of-bounds Read