CVE-2023-54031

Source
https://cve.org/CVERecord?id=CVE-2023-54031
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-54031.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2023-54031
Downstream
Related
Published
2025-12-24T10:55:58.885Z
Modified
2026-03-31T17:29:49.447820989Z
Summary
vdpa: Add queue index attr to vdpa_nl_policy for nlattr length check
Details

In the Linux kernel, the following vulnerability has been resolved:

vdpa: Add queue index attr to vdpanlpolicy for nlattr length check

The vdpanlpolicy structure is used to validate the nlattr when parsing the incoming nlmsg. It will ensure the attribute being described produces a valid nlattr pointer in info->attrs before entering into each handler in vdpanlops.

That is to say, the missing part in vdpanlpolicy may lead to illegal nlattr after parsing, which could lead to OOB read just like CVE-2023-3773.

This patch adds the missing nla_policy for vdpa queue index attr to avoid such bugs.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/54xxx/CVE-2023-54031.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
13b00b135665c92065a27c0c39dd97e0f380bd4f
Fixed
8ad9bc25cbdcec72e7ca43dd8281decb69ea9a70
Fixed
ccb533b7070aeeb65c66ea5d590e9c62421dcd61
Fixed
b3003e1b54e057f5f3124e437b80c3bef26ed3fe

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-54031.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.19.0
Fixed
6.1.47
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.4.12

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-54031.json"