cbcvebase.
CVE-2023-52692
published 2024-05-17

CVE-2023-52692: In the Linux kernel, the following vulnerability has been resolved: ALSA: scarlett2: Add missing error check to scarlett2_usb_set_config()…

PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.22%
12.8th percentile
In the Linux kernel, the following vulnerability has been resolved: ALSA: scarlett2: Add missing error check to scarlett2_usb_set_config() scarlett2_usb_set_config() calls scarlett2_usb_get() but was not checking the result. Return the error if it fails rather than continuing with an invalid value.

Affected

14 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.76-1 (bookworm)linux 6.1.76-1 (bookworm)
linuxlinux
linuxlinux>= 9e15fae6c51a362418f8b3054f1322c54675df94 < 51d5697e1c0380d482c3eab002bfc8d0be177e9951d5697e1c0380d482c3eab002bfc8d0be177e99
linuxlinux>= 9e15fae6c51a362418f8b3054f1322c54675df94 < be96acd3eaa790d10a5b33e65267f52d02f6ad88be96acd3eaa790d10a5b33e65267f52d02f6ad88
linuxlinux>= 9e15fae6c51a362418f8b3054f1322c54675df94 < 996fde492ad9b9563ee483b363af40d7696a8467996fde492ad9b9563ee483b363af40d7696a8467
linuxlinux>= 9e15fae6c51a362418f8b3054f1322c54675df94 < 145c5aa51486171025ab47f35cff34bff8d0cea3145c5aa51486171025ab47f35cff34bff8d0cea3
linuxlinux>= 9e15fae6c51a362418f8b3054f1322c54675df94 < ca459dfa7d4ed9098fcf13e410963be6ae9b6bf3ca459dfa7d4ed9098fcf13e410963be6ae9b6bf3
linuxlinux_kernel>= 0 < 6.1.76-16.1.76-1
linuxlinux_kernel>= 0 < 6.6.15-16.6.15-1
linuxlinux_kernel>= 0 < 6.6.15-16.6.15-1
linuxlinux_kernel>= 5.14 < 5.15.1485.15.148
linuxlinux_kernel>= 5.16 < 6.1.756.1.75
linuxlinux_kernel>= 6.2 < 6.6.146.6.14
linuxlinux_kernel>= 6.7 < 6.7.26.7.2

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH
vendor_ubuntu6.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.