cbcvebase.
CVE-2023-53432
published 2025-09-18

CVE-2023-53432: In the Linux kernel, the following vulnerability has been resolved: firewire: net: fix use after free in fwnet_finish_incoming_packet() The netif_rx() function…

PriorityP338high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.14%
4.0th percentile
In the Linux kernel, the following vulnerability has been resolved: firewire: net: fix use after free in fwnet_finish_incoming_packet() The netif_rx() function frees the skb so we can't dereference it to save the skb->len.

Affected

12 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.52-1 (bookworm)linux 6.1.52-1 (bookworm)
linuxlinux
linuxlinux>= c76acec6d55107b652a37c90b36c00bc8b04dabb < 2ea70379e4f4efa95c9daa7f3f9bdd4d40aec9272ea70379e4f4efa95c9daa7f3f9bdd4d40aec927
linuxlinux>= c76acec6d55107b652a37c90b36c00bc8b04dabb < 9040adc38cf6bfbb77034d558ac2c52f70d840ac9040adc38cf6bfbb77034d558ac2c52f70d840ac
linuxlinux>= c76acec6d55107b652a37c90b36c00bc8b04dabb < 9860921ab4521252dc39bb21b9c936bd09a009829860921ab4521252dc39bb21b9c936bd09a00982
linuxlinux>= c76acec6d55107b652a37c90b36c00bc8b04dabb < 3ff256751a2853e1ffaa36958ff933ccc98c6cb53ff256751a2853e1ffaa36958ff933ccc98c6cb5
linuxlinux_kernel< 5.15.1285.15.128
linuxlinux_kernel>= 0 < 6.1.52-16.1.52-1
linuxlinux_kernel>= 0 < 6.4.13-16.4.13-1
linuxlinux_kernel>= 0 < 6.4.13-16.4.13-1
linuxlinux_kernel>= 5.16 < 6.1.476.1.47
linuxlinux_kernel>= 6.2 < 6.4.126.4.12

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.