PT-2023-8791 · Linux+3 · Linux Kernel+3

Daniel Starke

·

Publicado

2023-09-18

·

Atualizado

2025-01-07

·

CVE-2023-52564

CVSS v3.1

5.5

Média

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description The issue is related to a null pointer dereference in the Linux kernel. The gsm cleanup mux() function tries to free up virtual ttys by calling gsm dlci release() for each available DLCI. The dlci put() function is called to decrease the reference counter for the DLCI via tty port put(), which finally calls gsm dlci free(). This already clears the pointer being checked in gsm cleanup mux() before calling gsm dlci release(). The actual issue is that nothing guards dlci put() from being called multiple times while the tty driver was triggered but did not yet finish calling gsm dlci free().
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

NULL Pointer Dereference

Improper Resource Release

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2024-01931
CVE-2023-52564
OPENSUSE-SU-2024_1321-1
OPENSUSE-SU-2024_1322-1
OPENSUSE-SU-2024_1322-2
OPENSUSE-SU-2024_1332-1
OPENSUSE-SU-2024_1332-2
OPENSUSE-SU-2024_1466-1
OPENSUSE-SU-2024_1480-1
OPENSUSE-SU-2024_1490-1
SUSE-SU-2024:1320-1
SUSE-SU-2024:1321-1
SUSE-SU-2024:1466-1
SUSE-SU-2024:1480-1
SUSE-SU-2024:1490-1

Produtos afetados

Astra Linux
Linux Kernel
Red Os
Suse