CVE-2023-47233
Summary
| CVE | CVE-2023-47233 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-11-03 21:15:00 UTC |
| Updated | 2023-11-14 16:00:00 UTC |
| Description | The brcm80211 component in the Linux kernel through 6.5.10 has a brcmf_cfg80211_detach use-after-free in the device unplugging (disconnect the USB by hotplug) code. For physically proximate attackers with local access, this "could be exploited in a real world scenario." This is related to brcmf_cfg80211_escan_timeout_worker in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c. |
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|
| Operating System |
Linux |
Linux Kernel |
All |
All |
All |
All |
References
| Reference | Source | Link | Tags |
|---|
| '[PATCH] wifi: cfg80211: Fix use-after-free bug in brcmf_cfg80211_detach' - MARC |
MISC |
marc.info |
|
| 1216702 – VUL-0: kernel: Use after Free bug in brcmf_cfg80211_detach |
MISC |
bugzilla.suse.com |
|
| [PATCH] wifi: cfg80211: Fix use-after-free bug in brcmf_cfg80211_detach - Zheng Wang |
|
lore.kernel.org |
|
| [PATCH] wifi: cfg80211: Fix use-after-free bug in brcmf_cfg80211_detach - Zheng Wang |
MISC |
lore.kernel.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 6000567 Debian Security Update for linux (DSA 5658-1)
- 755747 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2024:0469-1)
- 755750 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2024:0476-1)
- 755751 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2024:0474-1)
- 755752 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2024:0478-1)
- 755753 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2024:0484-1)
- 755754 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2024:0516-1)
- 755755 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2024:0515-1)
- 755756 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2024:0514-1)
- 755765 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2024:0483-1)