CVE-2023-53598

Source
https://nvd.nist.gov/vuln/detail/CVE-2023-53598
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-53598.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-53598
Downstream
Published
2025-10-04T15:44:10.380Z
Modified
2025-11-28T02:33:54.962440Z
Summary
bus: mhi: host: Range check CHDBOFF and ERDBOFF
Details

In the Linux kernel, the following vulnerability has been resolved:

bus: mhi: host: Range check CHDBOFF and ERDBOFF

If the value read from the CHDBOFF and ERDBOFF registers is outside the range of the MHI register space then an invalid address might be computed which later causes a kernel panic. Range check the read value to prevent a crash due to bad data from the device.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/53xxx/CVE-2023-53598.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
6cd330ae76ffd5c8f6294c423cabde7eeef1b40c
Fixed
372f1752b74572b0a9d2288841eab7db17daccae
Fixed
2343385fe6eed11d0432ab42a97b3ca4aef06a99
Fixed
a2cbb1a45a0c86ce77839c0875414efe1a89315e
Fixed
83bf6b87e2dd053d95d89eb2f01ae885f9e568db
Fixed
4e584127ec2bd42a37c88badb49df409f21fa40a
Fixed
6a0c637bfee69a74c104468544d9f2a6579626d0

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.7.0
Fixed
5.10.192
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.112
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.28
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.2.15
Type
ECOSYSTEM
Events
Introduced
6.3.0
Fixed
6.3.2