CVE-2023-2290
published 2023-06-26CVE-2023-2290: A potential vulnerability in the LenovoFlashDeviceInterface SMI handler may allow an attacker with local access and elevated privileges to execute arbitrary…
PriorityP429medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
EPSS
0.16%
5.6th percentile
A potential vulnerability in the LenovoFlashDeviceInterface SMI handler may allow an attacker with local access and elevated privileges to execute arbitrary code.
Affected
121 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| lenovo | thinkpad | — | — |
| lenovo | thinkpad_e14_firmware | — | — |
| lenovo | thinkpad_e14_gen_2_firmware | — | — |
| lenovo | thinkpad_e14_gen_4_firmware | — | — |
| lenovo | thinkpad_e14_gen_4_firmware | — | — |
| lenovo | thinkpad_e15_firmware | — | — |
| lenovo | thinkpad_e15_gen_2_firmware | — | — |
| lenovo | thinkpad_e15_gen_4_firmware | — | — |
| lenovo | thinkpad_e15_gen_4_firmware | — | — |
| lenovo | thinkpad_e490_firmware | — | — |
| lenovo | thinkpad_e490s_firmware | — | — |
| lenovo | thinkpad_e590_firmware | — | — |
| lenovo | thinkpad_l13_gen_3_firmware | — | — |
| lenovo | thinkpad_l13_yoga_gen_3_firmware | — | — |
| lenovo | thinkpad_l14_firmware | — | — |
| lenovo | thinkpad_l14_firmware | — | — |
| lenovo | thinkpad_l14_firmware | — | — |
| lenovo | thinkpad_l14_firmware | — | — |
| lenovo | thinkpad_l14_firmware | — | — |
| lenovo | thinkpad_l15_firmware | — | — |
| lenovo | thinkpad_l15_firmware | — | — |
| lenovo | thinkpad_l15_gen_2_firmware | — | — |
| lenovo | thinkpad_l15_gen_2_firmware | — | — |
| lenovo | thinkpad_l15_gen_3_firmware | — | — |
| lenovo | thinkpad_l490_firmware | — | — |
CVSS provenance
nvdv3.16.7MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
wifi: rt2x00: Fix memory leak when handling surveys
osv·2025-12-24
CVE-2023-54131 wifi: rt2x00: Fix memory leak when handling surveys
wifi: rt2x00: Fix memory leak when handling surveys
In the Linux kernel, the following vulnerability has been resolved:
wifi: rt2x00: Fix memory leak when handling surveys
When removing a rt2x00 device, its associated channel surveys
are not freed, causing a memory leak observable with kmemleak:
unreferenced object 0xffff9620f0881a00 (size 512):
comm "systemd-udevd", pid 2290, jiffies 4294906974 (age 33.768s)
hex dump (first 32 bytes):
70 44 12 00 00 00 00 00 92 8a 00 00 00 00 00 00 pD..............
00 00 00 00 00 00 00 00 ab 87 01 00 00 00 00 00 ................
backtrace:
[] __kmalloc+0x4b/0x130
[] rt2800_probe_hw+0xc2b/0x1380 [rt2800lib]
[] rt2800usb_probe_hw+0xe/0x60 [rt2800usb]
[] rt2x00lib_probe_dev+0x21a/0x7d0 [rt2x00lib]
[] rt2x00usb_probe+0x1be/0x980 [rt2x00usb]
[] usb_probe_i
GHSA
GHSA-29p8-776w-hr3v: A potential vulnerability in the LenovoFlashDeviceInterface SMI handler may allow an attacker with local access and elevated privileges to execute arb
ghsa_unreviewed·2023-06-26
CVE-2023-2290 [MEDIUM] CWE-119 GHSA-29p8-776w-hr3v: A potential vulnerability in the LenovoFlashDeviceInterface SMI handler may allow an attacker with local access and elevated privileges to execute arb
A potential vulnerability in the LenovoFlashDeviceInterface SMI handler may allow an attacker with local access and elevated privileges to execute arbitrary code.
Red Hat
kernel: Linux kernel rt2x00 Wi-Fi driver: Denial of Service via memory leak during device removal
vendor_redhat·2025-12-24·CVSS 5.5
CVE-2023-54131 [MEDIUM] CWE-772 kernel: Linux kernel rt2x00 Wi-Fi driver: Denial of Service via memory leak during device removal
kernel: Linux kernel rt2x00 Wi-Fi driver: Denial of Service via memory leak during device removal
In the Linux kernel, the following vulnerability has been resolved:
wifi: rt2x00: Fix memory leak when handling surveys
When removing a rt2x00 device, its associated channel surveys
are not freed, causing a memory leak observable with kmemleak:
unreferenced object 0xffff9620f0881a00 (size 512):
comm "systemd-udevd", pid 2290, jiffies 4294906974 (age 33.768s)
hex dump (first 32 bytes):
70 44 12 00 00 00 00 00 92 8a 00 00 00 00 00 00 pD..............
00 00 00 00 00 00 00 00 ab 87 01 00 00 00 00 00 ................
backtrace:
[] __kmalloc+0x4b/0x130
[] rt2800_probe_hw+0xc2b/0x1380 [rt2800lib]
[] rt2800usb_probe_hw+0xe/0x60 [rt2800usb]
[] rt2x00lib_probe_dev+0x21a/0x7d0 [rt2x00lib]
[] rt2x00usb_p
No detection rules found.
No public exploits indexed.
2023-06-26
Published