PT-2024-14731 · Linux +4 · Linux Kernel +4
Jarkko Nikula
·
Published
2023-09-25
·
Updated
2025-01-06
·
CVE-2023-52766
CVSS v3.1
7.1
7.1
High
Base vector | Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H |
Name of the Vulnerable Software and Affected Versions:
Linux kernel (affected versions not specified)
Description:
The issue is related to an out of bounds access in the `hci dma irq handler()` function. This occurs when looping over ring headers that are not allocated and enabled in `hci dma init()`, resulting in out of bounds access from `rings->headers[i]` access when `i` is greater than or equal to the number of allocated ring headers. The function `hci dma irq handler()` is vulnerable due to this improper handling.
Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Out of bounds Read
Weakness Enumeration
Related Identifiers
BDU:2025-07498
CVE-2023-52766
OPENSUSE-SU-2024_2189-1
OPENSUSE-SU-2024_2372-1
OPENSUSE-SU-2024_2394-1
OPENSUSE-SU-2024_3983-1
OPENSUSE-SU-2024_3984-1
OPENSUSE-SU-2024_3985-1
OPENSUSE-SU-2024_3986-1
OPENSUSE-SU-2024_4131-1
SUSE-SU-2024:2008-1
SUSE-SU-2024:2011-1
SUSE-SU-2024:2019-1
SUSE-SU-2024:2189-1
SUSE-SU-2024:2190-1
SUSE-SU-2024:2372-1
SUSE-SU-2024:2394-1
SUSE-SU-2024:2571-1
SUSE-SU-2024:2896-1
SUSE-SU-2024:2902-1
SUSE-SU-2024:2929-1
SUSE-SU-2024:2939-1
SUSE-SU-2024:2973-1
SUSE-SU-2024:3195-1
SUSE-SU-2024:3566-1
SUSE-SU-2024:3983-1
SUSE-SU-2024:3984-1
SUSE-SU-2024:3985-1
SUSE-SU-2024:3986-1
SUSE-SU-2024:4082-1
SUSE-SU-2024:4131-1
SUSE-SU-2024:4318-1
SUSE-SU-2024:4364-1
SUSE-SU-2024:4387-1
SUSE-SU-2024_3984-1
SUSE-SU-2024_3986-1
SUSE-SU-2024_4318-1
Affected Products
Astra Linux
Debian
Linux Kernel
Red Os
Suse
References · 8728
- 🔥 https://github.com/lanleft/CVE-2023-1829⭐ 71 🔗 15 · Exploit
- https://safe-surf.ru/specialists/bulletins-nkcki/719539 · Security Note
- https://bdu.fstec.ru/vul/2025-01684 · Security Note
- https://bdu.fstec.ru/vul/2025-01783 · Security Note
- https://bdu.fstec.ru/vul/2025-03659 · Security Note
- https://bdu.fstec.ru/vul/2024-11537 · Security Note
- https://bdu.fstec.ru/vul/2025-07512 · Security Note
- https://safe-surf.ru/specialists/bulletins-nkcki/721321 · Security Note
- https://safe-surf.ru/specialists/bulletins-nkcki/690704 · Security Note
- https://bdu.fstec.ru/vul/2023-07688 · Security Note
- https://bdu.fstec.ru/vul/2025-07519 · Security Note
- https://bdu.fstec.ru/vul/2025-03115 · Security Note
- https://bdu.fstec.ru/vul/2025-04446 · Security Note
- https://bdu.fstec.ru/vul/2025-01699 · Security Note
- https://bdu.fstec.ru/vul/2025-03305 · Security Note