A use-after-free vulnerability was found in the siano smsusb module in the Linux kernel. The bug occurs during device initialization when the siano device is plugged in. This flaw allows a local user to crash the system, causing a denial of service condition.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
History
21 Nov 2024, 08:34
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
References | () https://access.redhat.com/errata/RHSA-2023:6901 - Third Party Advisory | |
References | () https://access.redhat.com/errata/RHSA-2023:7077 - Third Party Advisory | |
References | () https://access.redhat.com/errata/RHSA-2024:0575 - | |
References | () https://access.redhat.com/errata/RHSA-2024:0724 - | |
References | () https://access.redhat.com/security/cve/CVE-2023-4132 - Third Party Advisory | |
References | () https://bugzilla.redhat.com/show_bug.cgi?id=2221707 - Issue Tracking, Third Party Advisory |
13 Sep 2024, 19:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
07 Feb 2024, 22:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
30 Jan 2024, 17:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
28 Dec 2023, 14:36
Type | Values Removed | Values Added |
---|---|---|
First Time |
Redhat enterprise Linux For Real Time
Redhat enterprise Linux For Real Time For Nfv |
|
CPE | cpe:2.3:o:redhat:enterprise_linux_for_real_time:8.0:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux_for_real_time_for_nfv:8.0:*:*:*:*:*:*:* |
|
References | () https://access.redhat.com/errata/RHSA-2023:6901 - Third Party Advisory | |
References | () https://access.redhat.com/errata/RHSA-2023:7077 - Third Party Advisory |
14 Nov 2023, 20:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
26 Oct 2023, 20:30
Type | Values Removed | Values Added |
---|---|---|
First Time |
Debian debian Linux
Debian |
|
References | (MISC) https://lists.debian.org/debian-lts-announce/2023/10/msg00027.html - Mailing List, Third Party Advisory | |
References | (MISC) https://security.netapp.com/advisory/ntap-20231020-0005/ - Third Party Advisory | |
References | (MISC) https://www.debian.org/security/2023/dsa-5480 - Third Party Advisory | |
References | (MISC) https://bugzilla.redhat.com/show_bug.cgi?id=2221707 - Issue Tracking, Third Party Advisory | |
References | (MISC) https://access.redhat.com/security/cve/CVE-2023-4132 - Third Party Advisory | |
References | (MISC) https://www.debian.org/security/2023/dsa-5492 - Third Party Advisory | |
CPE | cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:* cpe:2.3:o:debian:debian_linux:12.0:*:*:*:*:*:*:* |
20 Oct 2023, 15:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
20 Oct 2023, 00:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
10 Sep 2023, 12:16
Type | Values Removed | Values Added |
---|---|---|
References |
|
19 Aug 2023, 18:17
Type | Values Removed | Values Added |
---|---|---|
References |
|
08 Aug 2023, 14:30
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://access.redhat.com/security/cve/CVE-2023-4132 - Vendor Advisory | |
References | (MISC) https://bugzilla.redhat.com/show_bug.cgi?id=2221707 - Issue Tracking | |
CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:-:*:*:*:*:*:*:* |
|
First Time |
Fedoraproject
Linux Redhat Linux linux Kernel Fedoraproject fedora Redhat enterprise Linux |
|
CWE | CWE-416 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
03 Aug 2023, 15:37
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-08-03 15:15
Updated : 2024-11-21 08:34
NVD link : CVE-2023-4132
Mitre link : CVE-2023-4132
CVE.ORG link : CVE-2023-4132
JSON object : View
Products Affected
fedoraproject
- fedora
debian
- debian_linux
redhat
- enterprise_linux_for_real_time
- enterprise_linux
- enterprise_linux_for_real_time_for_nfv
linux
- linux_kernel
CWE
CWE-416
Use After Free