CVE-2023-53684: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: xfrm: Zero padding when dumping algos and encap When copying data to user-space we should ensure that only valid data is copied over. Padding in structures may be filled with random (possibly sensitve) data and should never be given directly to user-space. This patch fixes the copying of xfrm algorithms and the encap template in xfrm_user so that padding is zeroed.

Affected products

  • Linux Linux Kernel: from 5.11, before 5.15.106 (fixed in 5.15.106); from 5.16, before 6.1.23 (fixed in 6.1.23); from 6.2, before 6.2.10 (fixed in 6.2.10); version 6.3 only

Published 2025-10-07. Last modified 2026-06-17.