PT-2023-1656 · Linux+6 · Linux Kernel+6

Pietro Borrello

·

Published

2023-01-17

·

Updated

2024-02-20

·

CVE-2023-1073

CVSS v2.0

6.8

Medium

VectorAV:L/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A memory corruption flaw was found in the Linux kernel’s human interface device (HID) subsystem. This issue arises when a user inserts a malicious USB device, allowing a local user to crash or potentially escalate their privileges on the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2023:7077
ALSA-2024:0897
BDU:2023-01201
CESA-2023_6901
CESA-2023_7077
CESA-2024_0881
CESA-2024_0897
CVE-2023-1073
DLA-3403-1
DLA-3404-1
MGASA-2023-0087
MGASA-2023-0088
OESA-2023-1180
OESA-2023-1181
OESA-2023-1182
OESA-2023-1381
RHSA-2023:6583
RHSA-2023:6901
RHSA-2023:7077
RHSA-2023_6583
RHSA-2023_6901
RHSA-2023_7077
RHSA-2024:0412
RHSA-2024:0575
RHSA-2024:0881
RHSA-2024:0897
RHSA-2024_0881
RHSA-2024_0897
USN-5978-1
USN-6025-1
USN-6027-1
USN-6029-1
USN-6030-1
USN-6040-1
USN-6057-1
USN-6079-1
USN-6091-1
USN-6093-1
USN-6096-1
USN-6134-1
USN-6149-1
USN-6174-1
USN-6222-1
USN-6235-1
USN-6256-1

Affected Products

Almalinux
Astra Linux
Centos
Linuxmint
Linux Kernel
Red Hat
Ubuntu