PT-2025-54146 · Linux+4 · Linux Kernel+4

Published

2023-04-28

·

Updated

2026-03-24

·

CVE-2023-54300

CVSS v2.0

5.7

Medium

VectorAV:L/AC:L/Au:S/C:P/I:P/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw exists in the Linux kernel’s ath9k module related to handling wireless communication. Specifically, the issue involves referencing uninitialized memory within the ath9k wmi ctrl rx endpoint when processing data received through the ath9k htc rx msg function. This can occur if the received SKB (Socket Buffer) is improperly constructed, leading to an attempt to access memory that hasn't been initialized. The issue was identified through testing on a Qualcomm Atheros Communications AR9271 802.11n device using Syzkaller by the Linux Verification Center. The ath9k wmi ctrl rx function does not validate the packet length (pkt len) before accessing the SKB, potentially leading to the described memory access issue.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Access of Uninitialized Pointer

Weakness Enumeration

Related Identifiers

BDU:2026-02428
CVE-2023-54300
RHSA-2023:6583
RHSA-2023:7077
SUSE-SU-2026:0263-1
SUSE-SU-2026:0278-1
SUSE-SU-2026:0281-1
SUSE-SU-2026:0293-1
SUSE-SU-2026:0315-1
SUSE-SU-2026:0316-1
SUSE-SU-2026:0317-1
SUSE-SU-2026:0411-1
SUSE-SU-2026:0617-1
SUSE-SU-2026:20477-1
SUSE-SU-2026:20498-1
SUSE-SU-2026:20845-1
SUSE-SU-2026:20876-1

Affected Products

Ar9271
Centos
Linux Kernel
Red Hat
Ath9K