CVE-2023-54135
Linux Kernel vulnerability analysis and mitigation

Overview

CVE-2023-54135 is a potential out-of-bounds access vulnerability in the Linux kernel's maple tree implementation, specifically within the mas_wr_end_piv() function. The flaw occurs when a write operation extends to the last slot in a node, causing the function to use an out-of-bounds offset into the pivot array instead of the node maximum as the end pivot. Affected Linux kernel versions include those in the 6.1, 6.3, and 6.4 stable series prior to the respective patches (6.1.37, 6.3.11, and 6.4.1). The vulnerability was publicly disclosed on December 24, 2025, and carries a CVSS v3.1 base score of 5.5 (Medium) (Red Hat Advisory, Red Hat Bugzilla).

Technical details

The root cause is an improper bounds check (CWE-125: Out-of-bounds Read) in the mas_wr_end_piv() function of the Linux kernel's maple tree subsystem. When a write operation targets the last slot in a maple tree node, the function fails to validate the write offset end before using it as an index into the pivot array, potentially accessing memory beyond the array's bounds. Exploitation requires low-privilege local access; an attacker would need to trigger specific maple tree write operations that reach the last node slot. The kernel maintainers noted that while no current callers are affected, the fix was backported to stable kernels to protect against future maple tree users that may trigger this path (Red Hat Bugzilla).

Impact

Successful exploitation could allow a local attacker with low privileges to trigger a denial of service (DoS) by causing an out-of-bounds memory access, potentially crashing or destabilizing the affected Linux system. The vulnerability has no confidentiality or integrity impact — only availability is affected. There is no evidence of lateral movement potential or data exposure risk associated with this vulnerability (Red Hat Advisory).

Mitigation and workarounds

Patches are available for multiple stable Linux kernel versions: 6.1.37, 6.3.11, 6.4.1, and 6.5. Administrators should update to the patched kernel versions as soon as possible. As a compensating control, limiting local user access to critical systems reduces the attack surface. Monitoring for unexpected kernel panics or system crashes may help detect exploitation attempts (Red Hat Bugzilla, Red Hat Advisory).

Additional resources


SourceThis report was generated using AI

Related Linux Kernel vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2026-64557NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel-rt-selftests-internal
NoNoJul 29, 2026
CVE-2026-64556NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel-64k-devel
NoNoJul 29, 2026
CVE-2026-64555NONEN/A
  • Linux Kernel logoLinux Kernel
  • linux-azure-fde-6.14
NoNoJul 27, 2026
CVE-2026-64554NONEN/A
  • Linux Kernel logoLinux Kernel
  • linux-gcp-6.14
NoYesJul 27, 2026
CVE-2026-64553NONEN/A
  • Linux Kernel logoLinux Kernel
  • kernel-rt-64k-debug-modules-internal
NoYesJul 27, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management