CVE-2023-52499
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Mar 2, 2024
Updated: Jan 13, 2025
Summary
CVE-2023-52499 is a vulnerability affecting the Linux kernel on PowerPC 47x systems. The issue lies in the 'ret_from_syscall' function where a branch to perform a cache flush is executed. However, the branch back to continue the syscall return does not return to the correct location, leading to incorrect register values being used upon returning to user space. This issue was introduced by commit 6f76a01173cc and can be resolved by adding named local labels in the correct locations to ensure proper program flow.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.