cbcvebase.
CVE-2023-53153
published 2025-09-15

CVE-2023-53153: In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: Fix use after free for wext Key information in wext.connect is not reset on…

PriorityP340high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.15%
4.6th percentile
In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: Fix use after free for wext Key information in wext.connect is not reset on (re)connect and can hold data from a previous connection. Reset key data to avoid that drivers or mac80211 incorrectly detect a WEP connection request and access the freed or already reused memory. Additionally optimize cfg80211_sme_connect() and avoid an useless schedule of conn_work.

Affected

21 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.20-1 (bookworm)linux 6.1.20-1 (bookworm)
linuxlinux
linuxlinux>= fffd0934b9390f34bec45762192b7edd3b12b4b5 < 66af4a2ab1d65d556d638cb9555a3b823c2557a966af4a2ab1d65d556d638cb9555a3b823c2557a9
linuxlinux>= fffd0934b9390f34bec45762192b7edd3b12b4b5 < a2a92b3e9d8e03ee3f9ee407fc46a9b4bd02d8b6a2a92b3e9d8e03ee3f9ee407fc46a9b4bd02d8b6
linuxlinux>= fffd0934b9390f34bec45762192b7edd3b12b4b5 < 6f1959c17d4cb5b74af6fc31dc787e1dc3e4f6e26f1959c17d4cb5b74af6fc31dc787e1dc3e4f6e2
linuxlinux>= fffd0934b9390f34bec45762192b7edd3b12b4b5 < 2cfe78619b0de6d2da773978bc2d22797212eaa72cfe78619b0de6d2da773978bc2d22797212eaa7
linuxlinux>= fffd0934b9390f34bec45762192b7edd3b12b4b5 < fd081afd21eb35b968b0330700c43ec94986e1c4fd081afd21eb35b968b0330700c43ec94986e1c4
linuxlinux>= fffd0934b9390f34bec45762192b7edd3b12b4b5 < 22dfb21bf1cd876616d45cda1bc6daa89eec674722dfb21bf1cd876616d45cda1bc6daa89eec6747
linuxlinux>= fffd0934b9390f34bec45762192b7edd3b12b4b5 < f4b6a138efb8a32507b8946104e32cb926308da7f4b6a138efb8a32507b8946104e32cb926308da7
linuxlinux>= fffd0934b9390f34bec45762192b7edd3b12b4b5 < 015b8cc5e7c4d7bb671f1984d7b7338c310b185b015b8cc5e7c4d7bb671f1984d7b7338c310b185b
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 0 < 6.1.20-16.1.20-1
linuxlinux_kernel>= 2.6.32 < 4.14.3084.14.308
linuxlinux_kernel>= 4.15 < 4.19.2764.19.276
linuxlinux_kernel>= 4.20 < 5.4.2355.4.235
linuxlinux_kernel>= 5.11 < 5.15.995.15.99
linuxlinux_kernel>= 5.16 < 6.1.166.1.16
linuxlinux_kernel>= 5.5 < 5.10.1735.10.173
linuxlinux_kernel>= 6.2 < 6.2.36.2.3

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.