cbcvebase.
CVE-2023-53721
published 2025-10-22

CVE-2023-53721: In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Fix a NULL pointer dereference in ath12k_mac_op_hw_scan() In…

PriorityP419medium5.5
EPSS
0.17%
6.9th percentile
In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Fix a NULL pointer dereference in ath12k_mac_op_hw_scan() In ath12k_mac_op_hw_scan(), the return value of kzalloc() is directly used in memcpy(), which may lead to a NULL pointer dereference on failure of kzalloc(). Fix this bug by adding a check of arg.extraie.ptr. Tested-on: WCN7850 hw2.0 PCI WLAN.HMT.1.0-03427-QCAHMTSWPL_V1.0_V2.0_SILICONZ-1.15378.4

Affected

7 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.5.6-1 (forky)linux 6.5.6-1 (forky)
linuxlinux
linuxlinux>= d889913205cf7ebda905b1e62c5867ed4e39f6c2 < 5a263df398b581189fe632b4ab8440f3dd76c2515a263df398b581189fe632b4ab8440f3dd76c251
linuxlinux>= d889913205cf7ebda905b1e62c5867ed4e39f6c2 < 8ad314da54c6dd223a6b6cc85019160aa842f6598ad314da54c6dd223a6b6cc85019160aa842f659
linuxlinux_kernel>= 0 < 6.5.6-16.5.6-1
linuxlinux_kernel>= 0 < 6.5.6-16.5.6-1
linuxlinux_kernel>= 6.3.0 < 6.5.56.5.5
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.