PT-2025-54099 · Linux+1 · Linux Kernel+1
Published
2023-02-08
·
Updated
2026-02-24
·
CVE-2023-54270
CVSS v2.0
4.6
Medium
| Vector | AV:L/AC:L/Au:S/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Linux kernel versions prior to 6.2.0-rc3-15798-g5a41237ad1d4-dir8
Description
The Linux kernel contains use-after-free (UAF) bugs in the media subsystem, specifically within the Siano USB driver, caused by the
do submit urb() function. These bugs can lead to system instability or potential code execution. The issue is related to memory management during USB operations. Kernel Address Sanitizer (KASAN) reports indicate the presence of these bugs.Recommendations
Update to a version of the Linux kernel newer than 6.2.0-rc3-15798-g5a41237ad1d4-dir8.
Exploit
Fix
Use After Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linux Kernel
Siano Usb Driver