CVE-2023-54139

Published: Dic 24, 2025 Last Modified: Dic 29, 2025
ExploitDB:
Other exploit source:
Google Dorks:

Description

AI Translation Available

In the Linux kernel, the following vulnerability has been resolved:

tracing/user_events: Ensure write index cannot be negative

The write index indicates which event the data is for and accesses a
per-file array. The index is passed by user processes during write()
calls as the first 4 bytes. Ensure that it cannot be negative by
returning -EINVAL to prevent out of bounds accesses.

Update ftrace self-test to ensure this occurs properly.

EPSS (Exploit Prediction Scoring System)

Trend Analysis

EPSS (Exploit Prediction Scoring System)

Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.

EPSS Score
0,0002
Percentile
0,1th
Updated

EPSS Score Trend (Last 82 Days)

https://git.kernel.org/stable/c/0489c2b2c3104b89f078dbcec8c744dfc157d3e9
https://git.kernel.org/stable/c/4fe46b5adf18e3dc606e62c9e6a0413398a17572
https://git.kernel.org/stable/c/cd98c93286a30cc4588dfd02453bec63c2f4acf4
https://git.kernel.org/stable/c/fa7f2f5d1739452280c22727c4384a52b72ab5de