← Back to CVE List

CVE-2023-52996

Published: 2025-03-27T17:15Z
Last Modified: 2025-03-28T18:11Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
In the Linux kernel, the following vulnerability has been resolved: ipv4: prevent potential spectre v1 gadget in fib_metrics_match() if (!type) continue; if (type > RTAX_MAX) return false; ... fi_val = fi->fib_metrics->metrics[type - 1]; @type being used as an array index, we need to prevent cpu speculation or risk leaking kernel memory content. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt