cbcvebase.
CVE-2023-52703
published 2024-05-21

CVE-2023-52703: In the Linux kernel, the following vulnerability has been resolved: net/usb: kalmia: Don't pass act_len in usb_bulk_msg error path syzbot reported that act_len…

PriorityP417medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.25%
16.9th percentile
In the Linux kernel, the following vulnerability has been resolved: net/usb: kalmia: Don't pass act_len in usb_bulk_msg error path syzbot reported that act_len in kalmia_send_init_packet() is uninitialized when passing it to the first usb_bulk_msg error path. Jiri Pirko noted that it's pointless to pass it in the error path, and that the value that would be printed in the second error path would be the value of act_len from the first call to usb_bulk_msg.[1] With this in mind, let's just not pass act_len to the usb_bulk_msg error paths. 1: https://lore.kernel.org/lkml/Y9pY61y1nwTuzMOa@nanopsycho/

Affected

21 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.15-1 (bookworm)linux 6.1.15-1 (bookworm)
linuxlinux
linuxlinux>= d40261236e8e278cb1936cb5e934262971692b10 < 1b5de7d44890b78519acbcc80d8d1f23ff2872e51b5de7d44890b78519acbcc80d8d1f23ff2872e5
linuxlinux>= d40261236e8e278cb1936cb5e934262971692b10 < 723ef7b66f37c0841f5a451ccbce47ee1641e081723ef7b66f37c0841f5a451ccbce47ee1641e081
linuxlinux>= d40261236e8e278cb1936cb5e934262971692b10 < a753352622b4f3c0219e0e9c73114b2848ae6042a753352622b4f3c0219e0e9c73114b2848ae6042
linuxlinux>= d40261236e8e278cb1936cb5e934262971692b10 < 525bdcb0838d19d918c7786151ee14661967a030525bdcb0838d19d918c7786151ee14661967a030
linuxlinux>= d40261236e8e278cb1936cb5e934262971692b10 < 338f826d3afead6e4df521f7972a4bef04a72efb338f826d3afead6e4df521f7972a4bef04a72efb
linuxlinux>= d40261236e8e278cb1936cb5e934262971692b10 < 02df3170c04a8356cd571ab9155a42f030190abc02df3170c04a8356cd571ab9155a42f030190abc
linuxlinux>= d40261236e8e278cb1936cb5e934262971692b10 < c68f345b7c425b38656e1791a0486769a8797016c68f345b7c425b38656e1791a0486769a8797016
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.15-16.1.15-1
linuxlinux_kernel>= 0 < 6.1.15-16.1.15-1
linuxlinux_kernel>= 0 < 6.1.15-16.1.15-1
linuxlinux_kernel>= 3.0.1 < 4.14.3064.14.306
linuxlinux_kernel>= 4.15 < 4.19.2734.19.273
linuxlinux_kernel>= 4.20 < 5.4.2325.4.232
linuxlinux_kernel>= 5.11 < 5.15.955.15.95
linuxlinux_kernel>= 5.16 < 6.1.136.1.13
linuxlinux_kernel>= 5.5 < 5.10.1695.10.169

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.