CVE-2023-52916·Kernel vulnerability
In the Linux kernel, the following vulnerability has been resolved: media: aspeed: Fix memory overwrite if timing is 1600x900 When capturing 1600x900, system could crash when system memory usage is tight. The way to reproduce this issue: 1. Use 1600x900 to display on host 2. Mount ISO through 'Virtual media' on OpenBMC's web 3. Run script as below on host to do sha continuously #!/bin/bash while [ [1] ]; do find /media -type f -printf '"%h/%f"\n' | xargs sha256sum done 4. Open KVM on OpenBMC's web The size of macro block captured is 8x8. Therefore, we should make sure the height of src-buf is 8 aligned to fix this issue.
- Severity
- high
- Software
- Kernel
- Fixed in
- 6.6
- Published
- 2024-09-06
Affected versions
From: 6.2
Until: 6.6
Fixed in: 6.6
How to fix this CVE
Update your Linux kernel to version 6.6 or later to resolve a memory overwrite vulnerability that occurs during 1600x900 video capture on Aspeed media devices. This issue can cause system crashes when memory pressure is high, particularly when performing concurrent disk I/O operations. Apply the kernel update through your distribution's package manager and reboot your system to activate the fix.
sudo dnf update kernelDefensia detects this vulnerability
How to check if you are affected
- Step 1: Check your current kernel version with `uname -r` and compare against the affected range (6.2 through 6.5.x)
- Step 2: Verify if Aspeed media device is present on your system with `lspci | grep -i aspeed` or `dmesg | grep -i aspeed`
- Step 3: Search kernel logs for memory-related crashes during video capture with `dmesg | grep -E '(1600x900|aspeed|memory overwrite|BUG|Oops)' | tail -50`
- Step 4: Confirm the fix is applied by running `uname -r` again after reboot and verifying the kernel version is 6.6 or later
FAQ
What is CVE-2023-52916?
CVE-2023-52916 is a memory overwrite vulnerability in the Linux kernel's Aspeed media driver that occurs when capturing video at 1600x900 resolution due to improper buffer height alignment. This can cause system crashes and data corruption when system memory is under pressure.
Is CVE-2023-52916 being actively exploited?
No, CVE-2023-52916 is not listed on the CISA KEV catalog and no public exploits are available. This vulnerability requires local access and specific hardware (Aspeed media devices) to trigger.
What versions of Kernel are affected by CVE-2023-52916?
Linux kernel versions 6.2 through 6.5.x are vulnerable. The vulnerability has been fixed in kernel version 6.6 and later.
How do I check if my server is vulnerable to CVE-2023-52916?
Run `uname -r` to check your kernel version. If the output shows 6.2, 6.3, 6.4, or 6.5.x, your system is vulnerable. Additionally verify Aspeed hardware presence with `lspci | grep -i aspeed`.
Does Defensia detect CVE-2023-52916?
Yes — Defensia's CVE advisory scanner compares installed package versions against the NVD database. If Linux kernel is installed on a monitored server, CVE-2023-52916 will appear in your dashboard with remediation steps.
Related Kernel CVEs
References
Track CVEs across your fleet automatically
Defensia scans your Linux servers and tells you exactly which ones are running vulnerable versions — including CVE-2023-52916. Free for 1 server.
Get started free