CVE-2023-53281Improper Locking in Linux

CWE-667Improper Locking5 documents5 sources
Severity
5.5MEDIUMNVD
EPSS
0.0%
top 97.82%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 16

Description

In the Linux kernel, the following vulnerability has been resolved: drivers: staging: rtl8723bs: Fix locking in _rtw_join_timeout_handler() Commit 041879b12ddb ("drivers: staging: rtl8192bs: Fix deadlock in rtw_joinbss_event_prehandle()") besides fixing the deadlock also modified _rtw_join_timeout_handler() to use spin_[un]lock_irq() instead of spin_[un]lock_bh(). _rtw_join_timeout_handler() calls rtw_do_join() which takes pmlmepriv->scanned_queue.lock using spin_[un]lock_bh(). This spin_unlo

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages4 packages

NVDlinux/linux_kernel5.15.475.15.111+4
Debianlinux/linux_kernel< 6.1.37-1+2
CVEListV5linux/linuxae60744d5fad840b9d056d35b4b652d95e755846209850f17717a3b5cc558578bef5631ac7045539+7
debiandebian/linux< linux 6.1.37-1 (bookworm)

Patches

🔴Vulnerability Details

2
GHSA
GHSA-vjmw-vhp2-pcr2: In the Linux kernel, the following vulnerability has been resolved: drivers: staging: rtl8723bs: Fix locking in _rtw_join_timeout_handler() Commit 02025-09-16
OSV
CVE-2023-53281: In the Linux kernel, the following vulnerability has been resolved: drivers: staging: rtl8723bs: Fix locking in _rtw_join_timeout_handler() Commit 0412025-09-16

📋Vendor Advisories

2
Red Hat
kernel: drivers: staging: rtl8723bs: Fix locking in _rtw_join_timeout_handler()2025-09-16
Debian
CVE-2023-53281: linux - In the Linux kernel, the following vulnerability has been resolved: drivers: st...2023
CVE-2023-53281 — Improper Locking in Linux | cvebase