CVE-2023-53532Use of Uninitialized Resource in Linux

Severity
5.5MEDIUMNVD
EPSS
0.0%
top 95.55%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 1

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix deinitialization of firmware resources Currently, in ath11k_ahb_fw_resources_init(), iommu domain mapping is done only for the chipsets having fixed firmware memory. Also, for such chipsets, mapping is done only if it does not have TrustZone support. During deinitialization, only if TrustZone support is not there, iommu is unmapped back. However, for non fixed firmware memory chipsets, TrustZone support is n

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages4 packages

NVDlinux/linux_kernel5.196.1.28+2
Debianlinux/linux_kernel< 6.1.37-1+2
CVEListV5linux/linuxf9eec4947add999e1251bf14365a48a655b786a40324300dce3412d4737b4ec5898d0188495a7caa+4
debiandebian/linux< linux 6.1.37-1 (bookworm)

Patches

🔴Vulnerability Details

2
OSV
CVE-2023-53532: In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix deinitialization of firmware resources Currently, in ath11k_ahb_2025-10-01
GHSA
GHSA-5p5f-7gvx-g7qx: In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: fix deinitialization of firmware resources Currently, in ath11k_ah2025-10-01

📋Vendor Advisories

2
Red Hat
kernel: wifi: ath11k: fix deinitialization of firmware resources2025-10-01
Debian
CVE-2023-53532: linux - In the Linux kernel, the following vulnerability has been resolved: wifi: ath11...2023
CVE-2023-53532 — Use of Uninitialized Resource in Linux | cvebase