cbcvebase.
CVE-2023-52595
published 2024-03-06

CVE-2023-52595: In the Linux kernel, the following vulnerability has been resolved: wifi: rt2x00: restart beacon queue when hardware reset When a hardware reset is triggered…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.17%
7.0th percentile
In the Linux kernel, the following vulnerability has been resolved: wifi: rt2x00: restart beacon queue when hardware reset When a hardware reset is triggered, all registers are reset, so all queues are forced to stop in hardware interface. However, mac80211 will not automatically stop the queue. If we don't manually stop the beacon queue, the queue will be deadlocked and unable to start again. This patch fixes the issue where Apple devices cannot connect to the AP after calling ieee80211_restart_hw().

Affected

21 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.82-1 (bookworm)linux 6.1.82-1 (bookworm)
linuxlinux
linuxlinux>= e403fa31ed71e87de8e5991e23406b8377c9c894 < e1f113b57ddd18274d7c83618deca25cc880bc48e1f113b57ddd18274d7c83618deca25cc880bc48
linuxlinux>= e403fa31ed71e87de8e5991e23406b8377c9c894 < 69e905beca193125820c201ab3db4fb0e245124e69e905beca193125820c201ab3db4fb0e245124e
linuxlinux>= e403fa31ed71e87de8e5991e23406b8377c9c894 < 4cc198580a7b93a36f5beb923f40f7ae27a3716c4cc198580a7b93a36f5beb923f40f7ae27a3716c
linuxlinux>= e403fa31ed71e87de8e5991e23406b8377c9c894 < 739b3ccd9486dff04af95f9a890846d088a84957739b3ccd9486dff04af95f9a890846d088a84957
linuxlinux>= e403fa31ed71e87de8e5991e23406b8377c9c894 < 04cfe4a5da57ab9358cdfadea22bcb37324aaf8304cfe4a5da57ab9358cdfadea22bcb37324aaf83
linuxlinux>= e403fa31ed71e87de8e5991e23406b8377c9c894 < fdb580ed05df8973aa5149cafa598c64bebcd0cbfdb580ed05df8973aa5149cafa598c64bebcd0cb
linuxlinux>= e403fa31ed71e87de8e5991e23406b8377c9c894 < a11d965a218f0cd95b13fe44d0bcd8a20ce134a8a11d965a218f0cd95b13fe44d0bcd8a20ce134a8
linuxlinux_kernel< 5.4.2695.4.269
linuxlinux_kernel>= 0 < 5.10.216-15.10.216-1
linuxlinux_kernel>= 0 < 6.1.82-16.1.82-1
linuxlinux_kernel>= 0 < 6.7.7-16.7.7-1
linuxlinux_kernel>= 0 < 6.7.7-16.7.7-1
linuxlinux_kernel>= 0 < 5.4.0-181.2015.4.0-181.201
linuxlinux_kernel>= 0 < 5.15.0-106.1165.15.0-106.116
linuxlinux_kernel>= 5.11 < 5.15.1495.15.149
linuxlinux_kernel>= 5.16 < 6.1.776.1.77
linuxlinux_kernel>= 5.5 < 5.10.2105.10.210
linuxlinux_kernel>= 6.2 < 6.6.166.6.16
linuxlinux_kernel>= 6.7 < 6.7.46.7.4

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
vendor_ubuntu7.5HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.