CVE-2023-35826Race Condition in Kernel

Severity
7.0HIGHNVD
EPSS
0.0%
top 94.28%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 18
Latest updateAug 11

Description

An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in cedrus_remove in drivers/staging/media/sunxi/cedrus/cedrus.c.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.0 | Impact: 5.9

Affected Packages10 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-wgpp-pf5c-x229: An issue was discovered in the Linux kernel before 62023-06-19
OSV
CVE-2023-35826: An issue was discovered in the Linux kernel before 62023-06-18

📋Vendor Advisories

4
Ubuntu
Linux kernel vulnerabilities2023-08-11
Red Hat
kernel: cedrus: race condition leading to use-after-free in cedrus_remove()2023-06-19
Microsoft
An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was found in cedrus_remove in drivers/staging/media/sunxi/cedrus/cedrus.c.2023-06-13
Debian
CVE-2023-35826: linux - An issue was discovered in the Linux kernel before 6.3.2. A use-after-free was f...2023
CVE-2023-35826 — Race Condition in Linux Kernel | cvebase