cbcvebase.
CVE-2023-4132
published 2023-08-03

CVE-2023-4132: A use-after-free vulnerability was found in the siano smsusb module in the Linux kernel. The bug occurs during device initialization when the siano device is…

medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
A use-after-free vulnerability was found in the siano smsusb module in the Linux kernel. The bug occurs during device initialization when the siano device is plugged in. This flaw allows a local user to crash the system, causing a denial of service condition.

Affected

18 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debiandebian_linux
debiandebian_linux
debianlinux< linux 6.1.52-1 (bookworm)linux 6.1.52-1 (bookworm)
linuxlinux_kernel<= 6.2.16
linuxlinux_kernel>= 0 < 5.10.191-15.10.191-1
linuxlinux_kernel>= 0 < 6.1.52-16.1.52-1
linuxlinux_kernel>= 0 < 6.4.4-16.4.4-1
linuxlinux_kernel>= 0 < 6.4.4-16.4.4-1
linuxlinux_kernel>= 0 < 5.4.0-166.1835.4.0-166.183
linuxlinux_kernel>= 0 < 5.15.0-86.965.15.0-86.96
linuxlinux_kernel>= 0 < 4.15.0-223.2354.15.0-223.235
msrccbl2_kernel_5.15.126.1-1_on_cbl_mariner_2.0
paloaltopan-os
redhatenterprise_linux
redhatenterprise_linux_for_real_time
redhatenterprise_linux_for_real_time_for_nfv
ubuntulinux-intel-iotg-5.15

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv9.8CRITICAL