cbcvebase.
CVE-2023-53039
published 2025-05-02

CVE-2023-53039: In the Linux kernel, the following vulnerability has been resolved: HID: intel-ish-hid: ipc: Fix potential use-after-free in work function When a reset notify…

PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.18%
7.8th percentile
In the Linux kernel, the following vulnerability has been resolved: HID: intel-ish-hid: ipc: Fix potential use-after-free in work function When a reset notify IPC message is received, the ISR schedules a work function and passes the ISHTP device to it via a global pointer ishtp_dev. If ish_probe() fails, the devm-managed device resources including ishtp_dev are freed, but the work is not cancelled, causing a use-after-free when the work function tries to access ishtp_dev. Use devm_work_autocancel() instead, so that the work is automatically cancelled if probe fails.

Affected

13 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.25-1 (bookworm)linux 6.1.25-1 (bookworm)
linuxlinux
linuxlinux>= ae02e5d40d5f829c589412c6253f925e35cf7a22 < 8c1d378b8c224fd50247625255f09fc01dcc58368c1d378b8c224fd50247625255f09fc01dcc5836
linuxlinux>= ae02e5d40d5f829c589412c6253f925e35cf7a22 < 0a594cb490ca6232671fc09e2dc1a0fc7ccbb0b50a594cb490ca6232671fc09e2dc1a0fc7ccbb0b5
linuxlinux>= ae02e5d40d5f829c589412c6253f925e35cf7a22 < d3ce3afd9f791dd1b7daedfcf8c396b60af5dec0d3ce3afd9f791dd1b7daedfcf8c396b60af5dec0
linuxlinux>= ae02e5d40d5f829c589412c6253f925e35cf7a22 < 8ae2f2b0a28416ed2f6d8478ac8b9f7862f367858ae2f2b0a28416ed2f6d8478ac8b9f7862f36785
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.1.25-16.1.25-1
linuxlinux_kernel>= 0 < 6.1.25-16.1.25-1
linuxlinux_kernel>= 0 < 6.1.25-16.1.25-1
linuxlinux_kernel>= 4.9 < 5.15.1055.15.105
linuxlinux_kernel>= 5.16 < 6.1.226.1.22
linuxlinux_kernel>= 6.2 < 6.2.96.2.9

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.