CVE-2023-52806
published 2024-05-21CVE-2023-52806: In the Linux kernel, the following vulnerability has been resolved: ALSA: hda: Fix possible null-ptr-deref when assigning a stream While AudioDSP drivers…
PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.26%
17.2th percentile
In the Linux kernel, the following vulnerability has been resolved:
ALSA: hda: Fix possible null-ptr-deref when assigning a stream
While AudioDSP drivers assign streams exclusively of HOST or LINK type,
nothing blocks a user to attempt to assign a COUPLED stream. As
supplied substream instance may be a stub, what is the case when
code-loading, such scenario ends with null-ptr-deref.
Affected
25 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.64-1 (bookworm) | linux 6.1.64-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 14752412721c61d9ac1e8d8fb51d7148cb15f85b < 7de25112de8222fd20564769e6c99dc9f9738a0b | 7de25112de8222fd20564769e6c99dc9f9738a0b |
| linux | linux | >= 14752412721c61d9ac1e8d8fb51d7148cb15f85b < 758c7733cb821041f5fd403b7b97c0b95d319323 | 758c7733cb821041f5fd403b7b97c0b95d319323 |
| linux | linux | >= 14752412721c61d9ac1e8d8fb51d7148cb15f85b < 2527775616f3638f4fd54649eba8c7b84d5e4250 | 2527775616f3638f4fd54649eba8c7b84d5e4250 |
| linux | linux | >= 14752412721c61d9ac1e8d8fb51d7148cb15f85b < 25354bae4fc310c3928e8a42fda2d486f67745d7 | 25354bae4fc310c3928e8a42fda2d486f67745d7 |
| linux | linux | >= 14752412721c61d9ac1e8d8fb51d7148cb15f85b < 631a96e9eb4228ff75fce7e72d133ca81194797e | 631a96e9eb4228ff75fce7e72d133ca81194797e |
| linux | linux | >= 14752412721c61d9ac1e8d8fb51d7148cb15f85b < 43b91df291c8802268ab3cfd8fccfdf135800ed4 | 43b91df291c8802268ab3cfd8fccfdf135800ed4 |
| linux | linux | >= 14752412721c61d9ac1e8d8fb51d7148cb15f85b < fe7c1a0c2b25c82807cb46fc3aadbf2664a682b0 | fe7c1a0c2b25c82807cb46fc3aadbf2664a682b0 |
| linux | linux | >= 14752412721c61d9ac1e8d8fb51d7148cb15f85b < 4a320da7f7cbdab2098b103c47f45d5061f42edd | 4a320da7f7cbdab2098b103c47f45d5061f42edd |
| linux | linux | >= 14752412721c61d9ac1e8d8fb51d7148cb15f85b < f93dc90c2e8ed664985e366aa6459ac83cdab236 | f93dc90c2e8ed664985e366aa6459ac83cdab236 |
| linux | linux_kernel | < 4.14.331 | 4.14.331 |
| linux | linux_kernel | >= 0 < 5.10.205-1 | 5.10.205-1 |
| linux | linux_kernel | >= 0 < 6.1.64-1 | 6.1.64-1 |
| linux | linux_kernel | >= 0 < 6.6.8-1 | 6.6.8-1 |
| linux | linux_kernel | >= 0 < 6.6.8-1 | 6.6.8-1 |
| linux | linux_kernel | >= 0 < 4.4.0-258.292 | 4.4.0-258.292 |
| linux | linux_kernel | >= 0 < 4.15.0-228.240 | 4.15.0-228.240 |
| linux | linux_kernel | >= 4.15 < 4.19.300 | 4.19.300 |
| linux | linux_kernel | >= 4.20 < 5.4.262 | 5.4.262 |
| linux | linux_kernel | >= 5.11 < 5.15.140 | 5.15.140 |
| linux | linux_kernel | >= 5.16 < 6.1.64 | 6.1.64 |
| linux | linux_kernel | >= 5.5 < 5.10.202 | 5.10.202 |
| linux | linux_kernel | >= 6.2 < 6.5.13 | 6.5.13 |
| linux | linux_kernel | >= 6.6 < 6.6.3 | 6.6.3 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
vendor_ubuntu5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
Siemens SINEC OS
cisa_ics·2025-08-14
Siemens SINEC OS
ICS Advisory
##
Siemens SINEC OS
Release DateAugust 14, 2025
Alert CodeICSA-25-226-15
Related topics:
Industrial Control System Vulnerabilities, Industrial Control Systems
As of January 10, 2023, CISA will no longer be updating ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. For the most up-to-date information on vulnerabilities in this advisory, please see Siemens' ProductCERT Security Advisories (CERT Services | Services | Siemens Global).
View CSAF
## 1. EXECUTIVE SUMMARY
- CVSS v3.1 9.1
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Siemens
- Equipment: RUGGEDCOM, SCALANCE
- Vulnerabilities: NULL Pointer Dereference, Use After Free, Unchecked Input for Loop Condition, Out-of-bounds Write, Ou
Ubuntu
Linux kernel (Oracle) vulnerabilities
vendor_ubuntu·2024-08-28·CVSS 5.5
CVE-2024-35955 [MEDIUM] Linux kernel (Oracle) vulnerabilities
Title: Linux kernel (Oracle) vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
Yuxuan Hu discovered that the Bluetooth RFCOMM protocol driver in the Linux
Kernel contained a race condition, leading to a NULL pointer dereference.
An attacker could possibly use this to cause a denial of service (system
crash). (CVE-2024-22099)
It was discovered that a race condition existed in the Bluetooth subsystem
in the Linux kernel, leading to a null pointer dereference vulnerability. A
privileged local attacker could use this to possibly cause a denial of
service (system crash). (CVE-2024-24860)
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsyst
Ubuntu
Linux kernel (Azure) vulnerabilities
vendor_ubuntu·2024-08-23·CVSS 5.5
CVE-2024-39484 [MEDIUM] Linux kernel (Azure) vulnerabilities
Title: Linux kernel (Azure) vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
Yuxuan Hu discovered that the Bluetooth RFCOMM protocol driver in the Linux
Kernel contained a race condition, leading to a NULL pointer dereference.
An attacker could possibly use this to cause a denial of service (system
crash). (CVE-2024-22099)
It was discovered that a race condition existed in the Bluetooth subsystem
in the Linux kernel, leading to a null pointer dereference vulnerability. A
privileged local attacker could use this to possibly cause a denial of
service (system crash). (CVE-2024-24860)
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsyste
Ubuntu
Linux kernel (AWS) vulnerabilities
vendor_ubuntu·2024-08-22·CVSS 5.5
CVE-2024-39292 [MEDIUM] Linux kernel (AWS) vulnerabilities
Title: Linux kernel (AWS) vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
Yuxuan Hu discovered that the Bluetooth RFCOMM protocol driver in the Linux
Kernel contained a race condition, leading to a NULL pointer dereference.
An attacker could possibly use this to cause a denial of service (system
crash). (CVE-2024-22099)
It was discovered that a race condition existed in the Bluetooth subsystem
in the Linux kernel, leading to a null pointer dereference vulnerability. A
privileged local attacker could use this to possibly cause a denial of
service (system crash). (CVE-2024-24860)
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems
Ubuntu
Linux kernel vulnerabilities
vendor_ubuntu·2024-08-21·CVSS 5.5
CVE-2024-35955 [MEDIUM] Linux kernel vulnerabilities
Title: Linux kernel vulnerabilities
Summary: Several security issues were fixed in the Linux kernel.
Yuxuan Hu discovered that the Bluetooth RFCOMM protocol driver in the Linux
Kernel contained a race condition, leading to a NULL pointer dereference.
An attacker could possibly use this to cause a denial of service (system
crash). (CVE-2024-22099)
It was discovered that a race condition existed in the Bluetooth subsystem
in the Linux kernel, leading to a null pointer dereference vulnerability. A
privileged local attacker could use this to possibly cause a denial of
service (system crash). (CVE-2024-24860)
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems:
- Su
Red Hat
kernel: ALSA: hda: Fix possible null-ptr-deref when assigning a stream
vendor_redhat·2024-05-21·CVSS 5.5
CVE-2023-52806 [MEDIUM] CWE-476 kernel: ALSA: hda: Fix possible null-ptr-deref when assigning a stream
kernel: ALSA: hda: Fix possible null-ptr-deref when assigning a stream
In the Linux kernel, the following vulnerability has been resolved:
ALSA: hda: Fix possible null-ptr-deref when assigning a stream
While AudioDSP drivers assign streams exclusively of HOST or LINK type,
nothing blocks a user to attempt to assign a COUPLED stream. As
supplied substream instance may be a stub, what is the case when
code-loading, such scenario ends with null-ptr-deref.
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel-rt (Red Hat Enterprise Linux 7) - Out of support scope
Package: kernel (Red Hat Enterprise Linux 8) - Affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Affected
Package: kernel (Red H
Debian
CVE-2023-52806: linux - In the Linux kernel, the following vulnerability has been resolved: ALSA: hda: ...
vendor_debian·2023·CVSS 5.5
CVE-2023-52806 [MEDIUM] CVE-2023-52806: linux - In the Linux kernel, the following vulnerability has been resolved: ALSA: hda: ...
In the Linux kernel, the following vulnerability has been resolved: ALSA: hda: Fix possible null-ptr-deref when assigning a stream While AudioDSP drivers assign streams exclusively of HOST or LINK type, nothing blocks a user to attempt to assign a COUPLED stream. As supplied substream instance may be a stub, what is the case when code-loading, such scenario ends with null-ptr-deref.
Scope: local
bookworm: resolved (fixed in 6.1.64-1)
bullseye: resolved (fixed in 5.10.205-1)
forky: resolved (fixed in 6.6.8-1)
sid: resolved (fixed in 6.6.8-1)
trixie: resolved (fixed in 6.6.8-1)
OSV
linux-oracle vulnerabilities
osv·2024-08-28·CVSS 5.5
CVE-2024-22099 [MEDIUM] linux-oracle vulnerabilities
linux-oracle vulnerabilities
Yuxuan Hu discovered that the Bluetooth RFCOMM protocol driver in the Linux
Kernel contained a race condition, leading to a NULL pointer dereference.
An attacker could possibly use this to cause a denial of service (system
crash). (CVE-2024-22099)
It was discovered that a race condition existed in the Bluetooth subsystem
in the Linux kernel, leading to a null pointer dereference vulnerability. A
privileged local attacker could use this to possibly cause a denial of
service (system crash). (CVE-2024-24860)
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems:
- SuperH RISC architecture;
- User-Mode Linux (UML);
- GPU drivers;
- MMC sub
OSV
linux-azure, linux-azure-4.15 vulnerabilities
osv·2024-08-23·CVSS 5.5
CVE-2024-22099 [MEDIUM] linux-azure, linux-azure-4.15 vulnerabilities
linux-azure, linux-azure-4.15 vulnerabilities
Yuxuan Hu discovered that the Bluetooth RFCOMM protocol driver in the Linux
Kernel contained a race condition, leading to a NULL pointer dereference.
An attacker could possibly use this to cause a denial of service (system
crash). (CVE-2024-22099)
It was discovered that a race condition existed in the Bluetooth subsystem
in the Linux kernel, leading to a null pointer dereference vulnerability. A
privileged local attacker could use this to possibly cause a denial of
service (system crash). (CVE-2024-24860)
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems:
- SuperH RISC architecture;
- User-Mode Linux (UML);
- GPU d
OSV
linux-aws, linux-aws-hwe vulnerabilities
osv·2024-08-22·CVSS 5.5
CVE-2024-22099 [MEDIUM] linux-aws, linux-aws-hwe vulnerabilities
linux-aws, linux-aws-hwe vulnerabilities
Yuxuan Hu discovered that the Bluetooth RFCOMM protocol driver in the Linux
Kernel contained a race condition, leading to a NULL pointer dereference.
An attacker could possibly use this to cause a denial of service (system
crash). (CVE-2024-22099)
It was discovered that a race condition existed in the Bluetooth subsystem
in the Linux kernel, leading to a null pointer dereference vulnerability. A
privileged local attacker could use this to possibly cause a denial of
service (system crash). (CVE-2024-24860)
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems:
- SuperH RISC architecture;
- User-Mode Linux (UML);
- GPU driver
OSV
linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities
osv·2024-08-21·CVSS 5.5
CVE-2024-22099 [MEDIUM] linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities
linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities
Yuxuan Hu discovered that the Bluetooth RFCOMM protocol driver in the Linux
Kernel contained a race condition, leading to a NULL pointer dereference.
An attacker could possibly use this to cause a denial of service (system
crash). (CVE-2024-22099)
It was discovered that a race condition existed in the Bluetooth subsystem
in the Linux kernel, leading to a null pointer dereference vulnerability. A
privileged local attacker could use this to possibly cause a denial of
service (system crash). (CVE-2024-24860)
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems:
- SuperH RISC architecture;
- User-Mode Linu
OSV
linux, linux-gcp, linux-gcp-4.15, linux-hwe, linux-kvm vulnerabilities
osv·2024-08-21·CVSS 5.5
CVE-2024-22099 [MEDIUM] linux, linux-gcp, linux-gcp-4.15, linux-hwe, linux-kvm vulnerabilities
linux, linux-gcp, linux-gcp-4.15, linux-hwe, linux-kvm vulnerabilities
Yuxuan Hu discovered that the Bluetooth RFCOMM protocol driver in the Linux
Kernel contained a race condition, leading to a NULL pointer dereference.
An attacker could possibly use this to cause a denial of service (system
crash). (CVE-2024-22099)
It was discovered that a race condition existed in the Bluetooth subsystem
in the Linux kernel, leading to a null pointer dereference vulnerability. A
privileged local attacker could use this to possibly cause a denial of
service (system crash). (CVE-2024-24860)
Several security issues were discovered in the Linux kernel.
An attacker could possibly use these to compromise the system.
This update corrects flaws in the following subsystems:
- SuperH RISC architecture;
- User-
GHSA
GHSA-5jjf-3vj6-wjxf: In the Linux kernel, the following vulnerability has been resolved:
ALSA: hda: Fix possible null-ptr-deref when assigning a stream
While AudioDSP dr
ghsa_unreviewed·2024-05-21
CVE-2023-52806 [MEDIUM] CWE-476 GHSA-5jjf-3vj6-wjxf: In the Linux kernel, the following vulnerability has been resolved:
ALSA: hda: Fix possible null-ptr-deref when assigning a stream
While AudioDSP dr
In the Linux kernel, the following vulnerability has been resolved:
ALSA: hda: Fix possible null-ptr-deref when assigning a stream
While AudioDSP drivers assign streams exclusively of HOST or LINK type,
nothing blocks a user to attempt to assign a COUPLED stream. As
supplied substream instance may be a stub, what is the case when
code-loading, such scenario ends with null-ptr-deref.
OSV
CVE-2023-52806: In the Linux kernel, the following vulnerability has been resolved: ALSA: hda: Fix possible null-ptr-deref when assigning a stream While AudioDSP driv
osv·2024-05-21·CVSS 5.5
CVE-2023-52806 [MEDIUM] CVE-2023-52806: In the Linux kernel, the following vulnerability has been resolved: ALSA: hda: Fix possible null-ptr-deref when assigning a stream While AudioDSP driv
In the Linux kernel, the following vulnerability has been resolved: ALSA: hda: Fix possible null-ptr-deref when assigning a stream While AudioDSP drivers assign streams exclusively of HOST or LINK type, nothing blocks a user to attempt to assign a COUPLED stream. As supplied substream instance may be a stub, what is the case when code-loading, such scenario ends with null-ptr-deref.
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/2527775616f3638f4fd54649eba8c7b84d5e4250https://git.kernel.org/stable/c/25354bae4fc310c3928e8a42fda2d486f67745d7https://git.kernel.org/stable/c/43b91df291c8802268ab3cfd8fccfdf135800ed4https://git.kernel.org/stable/c/4a320da7f7cbdab2098b103c47f45d5061f42eddhttps://git.kernel.org/stable/c/631a96e9eb4228ff75fce7e72d133ca81194797ehttps://git.kernel.org/stable/c/758c7733cb821041f5fd403b7b97c0b95d319323https://git.kernel.org/stable/c/7de25112de8222fd20564769e6c99dc9f9738a0bhttps://git.kernel.org/stable/c/f93dc90c2e8ed664985e366aa6459ac83cdab236https://git.kernel.org/stable/c/fe7c1a0c2b25c82807cb46fc3aadbf2664a682b0https://git.kernel.org/stable/c/2527775616f3638f4fd54649eba8c7b84d5e4250https://git.kernel.org/stable/c/25354bae4fc310c3928e8a42fda2d486f67745d7https://git.kernel.org/stable/c/43b91df291c8802268ab3cfd8fccfdf135800ed4https://git.kernel.org/stable/c/4a320da7f7cbdab2098b103c47f45d5061f42eddhttps://git.kernel.org/stable/c/631a96e9eb4228ff75fce7e72d133ca81194797ehttps://git.kernel.org/stable/c/758c7733cb821041f5fd403b7b97c0b95d319323https://git.kernel.org/stable/c/7de25112de8222fd20564769e6c99dc9f9738a0bhttps://git.kernel.org/stable/c/f93dc90c2e8ed664985e366aa6459ac83cdab236https://git.kernel.org/stable/c/fe7c1a0c2b25c82807cb46fc3aadbf2664a682b0
2024-05-21
Published