Answer in brief
CVE-2023-54168 records a Unknown severity vulnerability in RDMA/mlx4: Prevent shift wrapping in set_user_sq_size(). The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
Answer in brief
CVE-2023-54168 records a Unknown severity vulnerability in RDMA/mlx4: Prevent shift wrapping in set_user_sq_size(). The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=839041329fd3410e07d614f81e75bb43367d8f89 <3d5ae269c4bd392ec1edbfb3bd031b8f42d7feff || >=839041329fd3410e07d614f81e75bb43367d8f89 <8feca625900777e02a449e53fe4121339934c38a || >=839041329fd3410e07d614f81e75bb43367d8f89 <9ad3221c86cc9c6305594b742d4a72dfbd4ea579 || >=839041329fd3410e07d614f81e75bb43367d8f89 <9911be2155720221a4f1f722b22bd0e2388d8bcf || >=839041329fd3410e07d614f81e75bb43367d8f89 <3ce0df3493277b9df275cb8455d9c677ae701230 || >=839041329fd3410e07d614f81e75bb43367d8f89 <196a6df08b08699ace4ce70e1efcdd9081b6565f || >=839041329fd3410e07d614f81e75bb43367d8f89 <a183905869e692b6b7805b7472235585eff8e429 || >=839041329fd3410e07d614f81e75bb43367d8f89 <d50b3c73f1ac20dabc53dc6e9d64ce9c79a331eb | 3d5ae269c4bd392ec1edbfb3bd031b8f42d7feff, 8feca625900777e02a449e53fe4121339934c38a, 9ad3221c86cc9c6305594b742d4a72dfbd4ea579, 9911be2155720221a4f1f722b22bd0e2388d8bcf, 3ce0df3493277b9df275cb8455d9c677ae701230, 196a6df08b08699ace4ce70e1efcdd9081b6565f, a183905869e692b6b7805b7472235585eff8e429, d50b3c73f1ac20dabc53dc6e9d64ce9c79a331eb |
| Linux/Linuxgeneric | 2.6.24 | Not reported |
Published upstream
Dec 30, 2025
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx4: Prevent shift wrapping in set_user_sq_size() The ucmd->log_sq_bb_count variable is controlled by the user so this shift can wrap. Fix it by using check_shl_overflow() in the same way that it was done in commit 515f60004ed9 ("RDMA/hns: Prevent undefined behavior in hns_roce_set_user_sq_size()").
Quoted source text, attributed separately from HOL analysis.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=839041329fd3410e07d614f81e75bb43367d8f89 <3d5ae269c4bd392ec1edbfb3bd031b8f42d7feff || >=839041329fd3410e07d614f81e75bb43367d8f89 <8feca625900777e02a449e53fe4121339934c38a || >=839041329fd3410e07d614f81e75bb43367d8f89 <9ad3221c86cc9c6305594b742d4a72dfbd4ea579 || >=839041329fd3410e07d614f81e75bb43367d8f89 <9911be2155720221a4f1f722b22bd0e2388d8bcf || >=839041329fd3410e07d614f81e75bb43367d8f89 <3ce0df3493277b9df275cb8455d9c677ae701230 || >=839041329fd3410e07d614f81e75bb43367d8f89 <196a6df08b08699ace4ce70e1efcdd9081b6565f || >=839041329fd3410e07d614f81e75bb43367d8f89 <a183905869e692b6b7805b7472235585eff8e429 || >=839041329fd3410e07d614f81e75bb43367d8f89 <d50b3c73f1ac20dabc53dc6e9d64ce9c79a331eb | 3d5ae269c4bd392ec1edbfb3bd031b8f42d7feff, 8feca625900777e02a449e53fe4121339934c38a, 9ad3221c86cc9c6305594b742d4a72dfbd4ea579, 9911be2155720221a4f1f722b22bd0e2388d8bcf, 3ce0df3493277b9df275cb8455d9c677ae701230, 196a6df08b08699ace4ce70e1efcdd9081b6565f, a183905869e692b6b7805b7472235585eff8e429, d50b3c73f1ac20dabc53dc6e9d64ce9c79a331eb |
| Linux/Linuxgeneric | 2.6.24 | Not reported |
Published upstream
Dec 30, 2025
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx4: Prevent shift wrapping in set_user_sq_size() The ucmd->log_sq_bb_count variable is controlled by the user so this shift can wrap. Fix it by using check_shl_overflow() in the same way that it was done in commit 515f60004ed9 ("RDMA/hns: Prevent undefined behavior in hns_roce_set_user_sq_size()").
Quoted source text, attributed separately from HOL analysis.