cbcvebase.
CVE-2023-52525
published 2024-03-02

CVE-2023-52525: In the Linux kernel, the following vulnerability has been resolved: wifi: mwifiex: Fix oob check condition in mwifiex_process_rx_packet Only skip the code path…

PriorityP429high7.1CVSS 3.1
AVLACLPRLUINSUCHINAH
EPSS
0.24%
14.8th percentile
In the Linux kernel, the following vulnerability has been resolved: wifi: mwifiex: Fix oob check condition in mwifiex_process_rx_packet Only skip the code path trying to access the rfc1042 headers when the buffer is too small, so the driver can still process packets without rfc1042 headers.

Affected

29 ranges· showing 25
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.64-1 (bookworm)linux 6.1.64-1 (bookworm)
linuxlinux
linuxlinux>= 11958528161731c58e105b501ed60b83a91ea941 < aef7a0300047e7b4707ea0411dc9597cba108fc8aef7a0300047e7b4707ea0411dc9597cba108fc8
linuxlinux>= 29eca8b7863d1d7de6c5b746b374e3487d14f154 < b8e260654a29de872e7cb85387d8ab8974694e8eb8e260654a29de872e7cb85387d8ab8974694e8e
linuxlinux>= 3975e21d4d01efaf0296ded40d11c06589c49245 < 6b706286473db4fd54b5f869faa67f4a8cb18e996b706286473db4fd54b5f869faa67f4a8cb18e99
linuxlinux>= 3fe3923d092e22d87d1ed03e2729db444b8c1331 < 10a18c8bac7f60d32b7af22da03b66f350beee3810a18c8bac7f60d32b7af22da03b66f350beee38
linuxlinux>= 4.14.326 < 4.14.3274.14.327
linuxlinux>= 4.19.295 < 4.19.2964.19.296
linuxlinux>= 5.10.195 < 5.10.1985.10.198
linuxlinux>= 5.15.132 < 5.15.1355.15.135
linuxlinux>= 5.4.257 < 5.4.2585.4.258
linuxlinux>= 6.1.53 < 6.1.576.1.57
linuxlinux>= 6.4.16 < 6.56.5
linuxlinux>= 6.5.3 < 6.5.76.5.7
linuxlinux>= 650d1bc02fba7b42f476d8b6643324abac5921ed < be2ff39b1504c5359f4a083c1cfcad21d666e216be2ff39b1504c5359f4a083c1cfcad21d666e216
linuxlinux>= 7c54b6fc39eb1aac51cf2945f8a25e2a47fdca02 < 5afb996349cb6d1f14d6ba9aaa7aed3bd82534f65afb996349cb6d1f14d6ba9aaa7aed3bd82534f6
linuxlinux>= 8824aa4ab62c800f75d96f48e1883a5f56ec5869 < 16cc18b9080892d1a0200a38e36ae52e464bc55516cc18b9080892d1a0200a38e36ae52e464bc555
linuxlinux>= f517c97fc129995de77dd06aa5a74f909ebf568f < 71b1d2b57f145c8469aa9346f0fd57bf59b2b89c71b1d2b57f145c8469aa9346f0fd57bf59b2b89c
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.205-15.10.205-1
linuxlinux_kernel>= 0 < 6.1.64-16.1.64-1
linuxlinux_kernel>= 0 < 6.5.8-16.5.8-1
linuxlinux_kernel>= 0 < 6.5.8-16.5.8-1

CVSS provenance

nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
osv7.1HIGH
vendor_debian7.1HIGH
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.