SB20251226336 - Incorrect calculation in Linux kernel x86 mm
Published: December 26, 2025 Updated: December 31, 2025
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Incorrect calculation (CVE-ID: CVE-2023-53996)
The vulnerability allows a local user to perform a denial of service (DoS) attack.
The vulnerability exists due to incorrect calculation within the amd_enc_cache_flush_required(), amd_enc_status_change_finish(), early_set_memory_enc_dec() and early_set_memory_encrypted() functions in arch/x86/mm/mem_encrypt_amd.c. A local user can perform a denial of service (DoS) attack.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/6615212d8e131b45bd9705b0d69cc0d2f624666f
- https://git.kernel.org/stable/c/8ae7457e71a320867d868f2622d7c643596e4f43
- https://git.kernel.org/stable/c/ac3f9c9f1b37edaa7d1a9b908bc79d843955a1a2
- https://git.kernel.org/stable/c/ba50e7773a99a109a1ea6f753b766a080d3b21cc
- https://mirrors.edge.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.53