CVE-2023-52459
published 2024-02-23CVE-2023-52459: In the Linux kernel, the following vulnerability has been resolved: media: v4l: async: Fix duplicated list deletion The list deletion call dropped here is…
PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.22%
13.0th percentile
In the Linux kernel, the following vulnerability has been resolved:
media: v4l: async: Fix duplicated list deletion
The list deletion call dropped here is already called from the
helper function in the line before. Having a second list_del()
call results in either a warning (with CONFIG_DEBUG_LIST=y):
list_del corruption, c46c8198->next is LIST_POISON1 (00000100)
If CONFIG_DEBUG_LIST is disabled the operation results in a
kernel error due to NULL pointer dereference.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.6.15-1 (forky) | linux 6.6.15-1 (forky) |
| linux | linux | — | — |
| linux | linux | >= 28a1295795d85a25f2e7dd391c43969e95fcb341 < b7062628caeaec90e8f691ebab2d70f31b7b6b91 | b7062628caeaec90e8f691ebab2d70f31b7b6b91 |
| linux | linux | >= 28a1295795d85a25f2e7dd391c43969e95fcb341 < 49d82811428469566667f22749610b8c132cdb3e | 49d82811428469566667f22749610b8c132cdb3e |
| linux | linux | >= 28a1295795d85a25f2e7dd391c43969e95fcb341 < 3de6ee94aae701fa949cd3b5df6b6a440ddfb8f2 | 3de6ee94aae701fa949cd3b5df6b6a440ddfb8f2 |
| linux | linux_kernel | >= 0 < 6.6.15-1 | 6.6.15-1 |
| linux | linux_kernel | >= 0 < 6.6.15-1 | 6.6.15-1 |
| linux | linux_kernel | >= 6.6.0 < 6.6.14 | 6.6.14 |
| linux | linux_kernel | >= 6.7.0 < 6.7.2 | 6.7.2 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5LOW
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2023-52459: In the Linux kernel, the following vulnerability has been resolved: media: v4l: async: Fix duplicated list deletion The list deletion call dropped her
osv·2024-02-23·CVSS 5.5
CVE-2023-52459 [MEDIUM] CVE-2023-52459: In the Linux kernel, the following vulnerability has been resolved: media: v4l: async: Fix duplicated list deletion The list deletion call dropped her
In the Linux kernel, the following vulnerability has been resolved: media: v4l: async: Fix duplicated list deletion The list deletion call dropped here is already called from the helper function in the line before. Having a second list_del() call results in either a warning (with CONFIG_DEBUG_LIST=y): list_del corruption, c46c8198->next is LIST_POISON1 (00000100) If CONFIG_DEBUG_LIST is disabled the operation results in a kernel error due to NULL pointer dereference.
GHSA
GHSA-98x5-562f-mwvp: In the Linux kernel, the following vulnerability has been resolved:
media: v4l: async: Fix duplicated list deletion
The list deletion call dropped h
ghsa_unreviewed·2024-02-23
CVE-2023-52459 [MEDIUM] CWE-476 GHSA-98x5-562f-mwvp: In the Linux kernel, the following vulnerability has been resolved:
media: v4l: async: Fix duplicated list deletion
The list deletion call dropped h
In the Linux kernel, the following vulnerability has been resolved:
media: v4l: async: Fix duplicated list deletion
The list deletion call dropped here is already called from the
helper function in the line before. Having a second list_del()
call results in either a warning (with CONFIG_DEBUG_LIST=y):
list_del corruption, c46c8198->next is LIST_POISON1 (00000100)
If CONFIG_DEBUG_LIST is disabled the operation results in a
kernel error due to NULL pointer dereference.
Red Hat
kernel: v4l: async: Fix duplicated list deletion
vendor_redhat·2024-02-23·CVSS 5.5
CVE-2023-52459 [MEDIUM] CWE-476 kernel: v4l: async: Fix duplicated list deletion
kernel: v4l: async: Fix duplicated list deletion
In the Linux kernel, the following vulnerability has been resolved:
media: v4l: async: Fix duplicated list deletion
The list deletion call dropped here is already called from the
helper function in the line before. Having a second list_del()
call results in either a warning (with CONFIG_DEBUG_LIST=y):
list_del corruption, c46c8198->next is LIST_POISON1 (00000100)
If CONFIG_DEBUG_LIST is disabled the operation results in a
kernel error due to NULL pointer dereference.
A flaw was found in the v4l2-async module in the Linux kernel. Under some conditions, the function to remove a linked list may be called twice and cause a NULL pointer dereference, resulting in a denial of service.
Statement: The kernel as shipped in Red Hat Enterprise Linux
Debian
CVE-2023-52459: linux - In the Linux kernel, the following vulnerability has been resolved: media: v4l:...
vendor_debian·2023·CVSS 5.5
CVE-2023-52459 [MEDIUM] CVE-2023-52459: linux - In the Linux kernel, the following vulnerability has been resolved: media: v4l:...
In the Linux kernel, the following vulnerability has been resolved: media: v4l: async: Fix duplicated list deletion The list deletion call dropped here is already called from the helper function in the line before. Having a second list_del() call results in either a warning (with CONFIG_DEBUG_LIST=y): list_del corruption, c46c8198->next is LIST_POISON1 (00000100) If CONFIG_DEBUG_LIST is disabled the operation results in a kernel error due to NULL pointer dereference.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved (fixed in 6.6.15-1)
sid: resolved (fixed in 6.6.15-1)
trixie: resolved (fixed in 6.6.15-1)
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/3de6ee94aae701fa949cd3b5df6b6a440ddfb8f2https://git.kernel.org/stable/c/49d82811428469566667f22749610b8c132cdb3ehttps://git.kernel.org/stable/c/b7062628caeaec90e8f691ebab2d70f31b7b6b91https://git.kernel.org/stable/c/3de6ee94aae701fa949cd3b5df6b6a440ddfb8f2https://git.kernel.org/stable/c/49d82811428469566667f22749610b8c132cdb3ehttps://git.kernel.org/stable/c/b7062628caeaec90e8f691ebab2d70f31b7b6b91
2024-02-23
Published