{"id":"DEBIAN-CVE-2023-53493","details":"In the Linux kernel, the following vulnerability has been resolved:  accel/qaic: tighten bounds checking in decode_message()  Copy the bounds checking from encode_message() to decode_message().  This patch addresses the following concerns.  Ensure that there is enough space for at least one header so that we don't have a negative size later.  \tif (msg_hdr_len \u003c sizeof(*trans_hdr))  Ensure that we have enough space to read the next header from the msg-\u003edata.  \tif (msg_len \u003e msg_hdr_len - sizeof(*trans_hdr)) \t\treturn -EINVAL;  Check that the trans_hdr-\u003elen is not below the minimum size:  \tif (hdr_len \u003c sizeof(*trans_hdr))  This minimum check ensures that we don't corrupt memory in decode_passthrough() when we do.  \tmemcpy(out_trans-\u003edata, in_trans-\u003edata, len - sizeof(in_trans-\u003ehdr));  And finally, use size_add() to prevent an integer overflow:  \tif (size_add(msg_len, hdr_len) \u003e msg_hdr_len)","modified":"2026-09-15T09:02:51.448268828Z","published":"2025-10-01T12:15:52.540Z","upstream":["CVE-2023-53493"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2023-53493"}],"affected":[{"package":{"name":"linux","ecosystem":"Debian:13","purl":"pkg:deb/debian/linux?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.4.11-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2023-53493.json"}},{"package":{"name":"linux","ecosystem":"Debian:14","purl":"pkg:deb/debian/linux?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"6.4.11-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2023-53493.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}