CVE-2023-53384
published 2025-09-18CVE-2023-53384: In the Linux kernel, the following vulnerability has been resolved: wifi: mwifiex: avoid possible NULL skb pointer dereference In…
PriorityP418medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.14%
3.7th percentile
In the Linux kernel, the following vulnerability has been resolved:
wifi: mwifiex: avoid possible NULL skb pointer dereference
In 'mwifiex_handle_uap_rx_forward()', always check the value
returned by 'skb_copy()' to avoid potential NULL pointer
dereference in 'mwifiex_uap_queue_bridged_pkt()', and drop
original skb in case of copying failure.
Found by Linux Verification Center (linuxtesting.org) with SVACE.
Affected
23 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.1.55-1 (bookworm) | linux 6.1.55-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 838e4f44929782a2163c7bc95a7cd2da5d8b47f9 < d155c5f64cefacdc6a9a26d40be53ee2903c28ff | d155c5f64cefacdc6a9a26d40be53ee2903c28ff |
| linux | linux | >= 838e4f44929782a2163c7bc95a7cd2da5d8b47f9 < 139d285e7695279f030dbb172e2d0245425c86c6 | 139d285e7695279f030dbb172e2d0245425c86c6 |
| linux | linux | >= 838e4f44929782a2163c7bc95a7cd2da5d8b47f9 < 231086e6a36316b823654f4535653f22d6344420 | 231086e6a36316b823654f4535653f22d6344420 |
| linux | linux | >= 838e4f44929782a2163c7bc95a7cd2da5d8b47f9 < bef85d58f7709896ed8426560ad117a73a37762f | bef85d58f7709896ed8426560ad117a73a37762f |
| linux | linux | >= 838e4f44929782a2163c7bc95a7cd2da5d8b47f9 < d7fd24b8d1bb54c5bcf583139e11a5e651e0263c | d7fd24b8d1bb54c5bcf583139e11a5e651e0263c |
| linux | linux | >= 838e4f44929782a2163c7bc95a7cd2da5d8b47f9 < 7e7197e4d6a1bc72a774590d8765909f898be1dc | 7e7197e4d6a1bc72a774590d8765909f898be1dc |
| linux | linux | >= 838e4f44929782a2163c7bc95a7cd2da5d8b47f9 < 0c57f9ad2c3ed43abb764b0247d610ff7fdb7a00 | 0c57f9ad2c3ed43abb764b0247d610ff7fdb7a00 |
| linux | linux | >= 838e4f44929782a2163c7bc95a7cd2da5d8b47f9 < c2509f7c37355e1f0bd5b7087815b845fd383723 | c2509f7c37355e1f0bd5b7087815b845fd383723 |
| linux | linux | >= 838e4f44929782a2163c7bc95a7cd2da5d8b47f9 < 35a7a1ce7c7d61664ee54f5239a1f120ab95a87e | 35a7a1ce7c7d61664ee54f5239a1f120ab95a87e |
| linux | linux_kernel | >= 0 < 5.10.197-1 | 5.10.197-1 |
| linux | linux_kernel | >= 0 < 6.1.55-1 | 6.1.55-1 |
| linux | linux_kernel | >= 0 < 6.5.3-1 | 6.5.3-1 |
| linux | linux_kernel | >= 0 < 6.5.3-1 | 6.5.3-1 |
| linux | linux_kernel | >= 3.7 < 4.14.326 | 4.14.326 |
| linux | linux_kernel | >= 4.15 < 4.19.295 | 4.19.295 |
| linux | linux_kernel | >= 4.20 < 5.4.257 | 5.4.257 |
| linux | linux_kernel | >= 5.11 < 5.15.132 | 5.15.132 |
| linux | linux_kernel | >= 5.16 < 6.1.53 | 6.1.53 |
| linux | linux_kernel | >= 5.5 < 5.10.195 | 5.10.195 |
| linux | linux_kernel | >= 6.2 < 6.4.16 | 6.4.16 |
| linux | linux_kernel | >= 6.5 < 6.5.3 | 6.5.3 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jhfh-g9jf-gfpv: In the Linux kernel, the following vulnerability has been resolved:
wifi: mwifiex: avoid possible NULL skb pointer dereference
In 'mwifiex_handle_ua
ghsa_unreviewed·2025-09-18
CVE-2023-53384 [MEDIUM] CWE-476 GHSA-jhfh-g9jf-gfpv: In the Linux kernel, the following vulnerability has been resolved:
wifi: mwifiex: avoid possible NULL skb pointer dereference
In 'mwifiex_handle_ua
In the Linux kernel, the following vulnerability has been resolved:
wifi: mwifiex: avoid possible NULL skb pointer dereference
In 'mwifiex_handle_uap_rx_forward()', always check the value
returned by 'skb_copy()' to avoid potential NULL pointer
dereference in 'mwifiex_uap_queue_bridged_pkt()', and drop
original skb in case of copying failure.
Found by Linux Verification Center (linuxtesting.org) with SVACE.
OSV
CVE-2023-53384: In the Linux kernel, the following vulnerability has been resolved: wifi: mwifiex: avoid possible NULL skb pointer dereference In 'mwifiex_handle_uap_
osv·2025-09-18·CVSS 5.5
CVE-2023-53384 [MEDIUM] CVE-2023-53384: In the Linux kernel, the following vulnerability has been resolved: wifi: mwifiex: avoid possible NULL skb pointer dereference In 'mwifiex_handle_uap_
In the Linux kernel, the following vulnerability has been resolved: wifi: mwifiex: avoid possible NULL skb pointer dereference In 'mwifiex_handle_uap_rx_forward()', always check the value returned by 'skb_copy()' to avoid potential NULL pointer dereference in 'mwifiex_uap_queue_bridged_pkt()', and drop original skb in case of copying failure. Found by Linux Verification Center (linuxtesting.org) with SVACE.
Red Hat
kernel: wifi: mwifiex: avoid possible NULL skb pointer dereference
vendor_redhat·2025-09-18·CVSS 5.5
CVE-2023-53384 [MEDIUM] CWE-476 kernel: wifi: mwifiex: avoid possible NULL skb pointer dereference
kernel: wifi: mwifiex: avoid possible NULL skb pointer dereference
In the Linux kernel, the following vulnerability has been resolved:
wifi: mwifiex: avoid possible NULL skb pointer dereference
In 'mwifiex_handle_uap_rx_forward()', always check the value
returned by 'skb_copy()' to avoid potential NULL pointer
dereference in 'mwifiex_uap_queue_bridged_pkt()', and drop
original skb in case of copying failure.
Found by Linux Verification Center (linuxtesting.org) with SVACE.
Package: kernel (Red Hat Enterprise Linux 10) - Not affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Fix deferred
Package: kernel-rt (Red Hat Enterprise Linux 7) - Fix deferred
Package: kernel (Red Hat Enterprise Linux 8) - Fix deferred
Package: ke
Debian
CVE-2023-53384: linux - In the Linux kernel, the following vulnerability has been resolved: wifi: mwifi...
vendor_debian·2023·CVSS 5.5
CVE-2023-53384 [MEDIUM] CVE-2023-53384: linux - In the Linux kernel, the following vulnerability has been resolved: wifi: mwifi...
In the Linux kernel, the following vulnerability has been resolved: wifi: mwifiex: avoid possible NULL skb pointer dereference In 'mwifiex_handle_uap_rx_forward()', always check the value returned by 'skb_copy()' to avoid potential NULL pointer dereference in 'mwifiex_uap_queue_bridged_pkt()', and drop original skb in case of copying failure. Found by Linux Verification Center (linuxtesting.org) with SVACE.
Scope: local
bookworm: resolved (fixed in 6.1.55-1)
bullseye: resolved (fixed in 5.10.197-1)
forky: resolved (fixed in 6.5.3-1)
sid: resolved (fixed in 6.5.3-1)
trixie: resolved (fixed in 6.5.3-1)
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/0c57f9ad2c3ed43abb764b0247d610ff7fdb7a00https://git.kernel.org/stable/c/139d285e7695279f030dbb172e2d0245425c86c6https://git.kernel.org/stable/c/231086e6a36316b823654f4535653f22d6344420https://git.kernel.org/stable/c/35a7a1ce7c7d61664ee54f5239a1f120ab95a87ehttps://git.kernel.org/stable/c/7e7197e4d6a1bc72a774590d8765909f898be1dchttps://git.kernel.org/stable/c/bef85d58f7709896ed8426560ad117a73a37762fhttps://git.kernel.org/stable/c/c2509f7c37355e1f0bd5b7087815b845fd383723https://git.kernel.org/stable/c/d155c5f64cefacdc6a9a26d40be53ee2903c28ffhttps://git.kernel.org/stable/c/d7fd24b8d1bb54c5bcf583139e11a5e651e0263c
2025-09-18
Published