cbcvebase.
CVE-2023-47233
published 2023-11-03

CVE-2023-47233: The brcm80211 component in the Linux kernel through 6.5.10 has a brcmf_cfg80211_detach use-after-free in the device unplugging (disconnect the USB by hotplug)…

PriorityP417medium4.3CVSS 3.1
AVPACLPRLUINSUCNINAH
EPSS
0.32%
24.1th percentile
The brcm80211 component in the Linux kernel through 6.5.10 has a brcmf_cfg80211_detach use-after-free in the device unplugging (disconnect the USB by hotplug) code. For physically proximate attackers with local access, this "could be exploited in a real world scenario." This is related to brcmf_cfg80211_escan_timeout_worker in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c.

Affected

31 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.85-1 (bookworm)linux 6.1.85-1 (bookworm)
linuxlinux
linuxlinux>= e756af5b30b008f6ffcfebf8ad0b477f6f225b62 < 202c503935042272e2f9e1bb549d5f69a8681169202c503935042272e2f9e1bb549d5f69a8681169
linuxlinux>= e756af5b30b008f6ffcfebf8ad0b477f6f225b62 < 8e3f03f4ef7c36091f46e7349096efb5a2cdb3a18e3f03f4ef7c36091f46e7349096efb5a2cdb3a1
linuxlinux>= e756af5b30b008f6ffcfebf8ad0b477f6f225b62 < bacb8c3ab86dcd760c15903fcee58169bc3026aabacb8c3ab86dcd760c15903fcee58169bc3026aa
linuxlinux>= e756af5b30b008f6ffcfebf8ad0b477f6f225b62 < 8c36205123dc57349b59b4f1a2301eb278cbc7318c36205123dc57349b59b4f1a2301eb278cbc731
linuxlinux>= e756af5b30b008f6ffcfebf8ad0b477f6f225b62 < 0b812f706fd7090be74812101114a0e165b367440b812f706fd7090be74812101114a0e165b36744
linuxlinux>= e756af5b30b008f6ffcfebf8ad0b477f6f225b62 < 190794848e2b9d15de92d502b6ac652806904f5a190794848e2b9d15de92d502b6ac652806904f5a
linuxlinux>= e756af5b30b008f6ffcfebf8ad0b477f6f225b62 < 6678a1e7d896c00030b31491690e8ddc9a90767a6678a1e7d896c00030b31491690e8ddc9a90767a
linuxlinux>= e756af5b30b008f6ffcfebf8ad0b477f6f225b62 < 0a7591e14a8da794d0b93b5d1c6254ccb23adacb0a7591e14a8da794d0b93b5d1c6254ccb23adacb
linuxlinux>= e756af5b30b008f6ffcfebf8ad0b477f6f225b62 < 0f7352557a35ab7888bc7831411ec8a3cbe20d780f7352557a35ab7888bc7831411ec8a3cbe20d78
linuxlinux_kernel<= 6.5.10
linuxlinux_kernel>= 0 < 5.10.216-15.10.216-1
linuxlinux_kernel>= 0 < 6.1.85-16.1.85-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 5.4.0-182.2025.4.0-182.202
linuxlinux_kernel>= 0 < 5.15.0-107.1175.15.0-107.117
linuxlinux_kernel>= 0 < 6.8.0-35.356.8.0-35.35
linuxlinux_kernel>= 0 < 4.4.0-254.2884.4.0-254.288
linuxlinux_kernel>= 0 < 4.15.0-225.2374.15.0-225.237
linuxlinux_kernel>= 3.7 < 4.19.3124.19.312
linuxlinux_kernel>= 4.20 < 5.4.2745.4.274
linuxlinux_kernel>= 5.11 < 5.15.1545.15.154

CVSS provenance

nvdv3.14.3MEDIUMCVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv6.5MEDIUM
vendor_ubuntu6.5MEDIUM
vendor_debian4.3MEDIUM
vendor_msrc4.3MEDIUM
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.