PT-2023-3084 · Linux+9 · Linux Kernel+9

Zheng Wang

·

Published

2023-03-07

·

Updated

2025-03-11

·

CVE-2023-3141

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux Kernel (affected versions not specified)
Description A use-after-free flaw was found in the r592 remove function in drivers/memstick/host/r592.c related to media access in the Linux Kernel. This issue allows a local attacker to crash the system at device disconnect, possibly leading to a kernel information leak. The flaw is associated with a race condition due to concurrent access to resources, which could impact the confidentiality and availability of protected information.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Race Condition

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2023:7077
ALT-PU-2023-1969
ALT-PU-2023-1994
ALT-PU-2023-2038
ALT-PU-2023-4663
ALT-PU-2023-4764
ALT-PU-2024-4263
ALT-PU-2024-4843
AZL-27154
BDU:2023-03172
CESA-2023_6901
CESA-2023_7077
CVE-2023-3141
DLA-3508-1
DLA-3623-1
MGASA-2023-0201
MGASA-2023-0202
OESA-2023-1379
OESA-2023-1380
OESA-2023-1381
OESA-2023-1382
OESA-2023-1493
OPENSUSE-SU-2023_2646-1
OPENSUSE-SU-2023_2859-1
OPENSUSE-SU-2023_2871-1
OPENSUSE-SU-2024:12994-1
OPENSUSE-SU-2024:13704-1
RHSA-2023:6583
RHSA-2023:6901
RHSA-2023:7077
RHSA-2023_6583
RHSA-2023_6901
RHSA-2023_7077
RHSA-2024:0575
RHSA-2024:0724
SUSE-SU-2023:2646-1
SUSE-SU-2023:2782-1
SUSE-SU-2023:2804-1
SUSE-SU-2023:2805-1
SUSE-SU-2023:2808-1
SUSE-SU-2023:2809-1
SUSE-SU-2023:2810-1
SUSE-SU-2023:2820-1
SUSE-SU-2023:2822-1
SUSE-SU-2023:2830-1
SUSE-SU-2023:2831-1
SUSE-SU-2023:2834-1
SUSE-SU-2023:2859-1
SUSE-SU-2023:2871-1
SUSE-SU-2023:3333-1
USN-6231-1
USN-6252-1
USN-6254-1
USN-6260-1
USN-6283-1
USN-6284-1
USN-6300-1
USN-6301-1
USN-6311-1
USN-6312-1
USN-6314-1
USN-6331-1
USN-6332-1
USN-6337-1
USN-6347-1
USN-6385-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Linux Kernel
Linuxmint
Red Hat
Red Os
Suse
Ubuntu