目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1336 CNY

100%

CVE-2023-53574— Linux kernel 安全漏洞

AI Predicted 3.7 Difficulty: Moderate EPSS 0.12% · P2

Affected Version Matrix 6

ベンダープロダクトVersion Rangeステータス
LinuxLinuxe3037485c68ec1a299ff41160d8fedbd4abc29b9< 4128b00a6006870e117ab1841e58f369e9284ecbaffected
e3037485c68ec1a299ff41160d8fedbd4abc29b9< 634fcbcaa4062db39aeb5ac6ed1bc1feb8dd5216affected
5.2affected
< 5.2unaffected
6.5.5≤ 6.5.*unaffected
6.6≤ *unaffected
新しい脆弱性情報の通知を購読するログインして購読

I. CVE-2023-53574の基本情報

脆弱性情報

脆弱性についてご質問がありますか?Shenlongの分析が参考になるかご確認ください!
Shenlongの10の質問を表示 ↗

高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。

脆弱性タイトル
wifi: rtw88: delete timer and free skb queue when unloading
ソース: CVE Program / CVE List V5
脆弱性説明
In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: delete timer and free skb queue when unloading Fix possible crash and memory leak on driver unload by deleting TX purge timer and freeing C2H queue in 'rtw_core_deinit()', shrink critical section in the latter by freeing COEX queue out of TX report lock scope.
ソース: CVE Program / CVE List V5
CVSS情報
N/A
ソース: CVE Program / CVE List V5
脆弱性タイプ
N/A
ソース: CVE Program / CVE List V5
脆弱性タイトル
Linux kernel 安全漏洞
ソース: CNNVD (China National Vulnerability Database)
脆弱性説明
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于未删除定时器和释放skb队列,可能导致崩溃和内存泄漏。
ソース: CNNVD (China National Vulnerability Database)
CVSS情報
N/A
ソース: CNNVD (China National Vulnerability Database)
脆弱性タイプ
N/A
ソース: CNNVD (China National Vulnerability Database)

影響を受ける製品

ベンダープロダクト影響を受けるバージョンCPE購読
LinuxLinux e3037485c68ec1a299ff41160d8fedbd4abc29b9 ~ 4128b00a6006870e117ab1841e58f369e9284ecb -
LinuxLinux 5.2 -

II. CVE-2023-53574の公開POC

#POC説明ソースリンクShenlongリンク
AI生成POCプレミアム

公開POCは見つかりませんでした。

ログインしてAI POCを生成

III. CVE-2023-53574のインテリジェンス情報

登录查看更多情报信息。

CVE-2023-53574 补丁与修复 (2)

Same Patch Batch · Linux · 2025-10-04 · 144 CVEs total

CVE-2025-399329.8 CRITICALsmb: client: let smbd_destroy() call disable_work_sync(&info->post_send_credits_work)
CVE-2025-399489.8 CRITICALice: fix Rx page leak on multi-buffer frames
CVE-2025-399469.8 CRITICALtls: make sure to abort the stream if headers are bogus
CVE-2025-399339.4 CRITICALsmb: client: let recv_done verify data_offset, data_length and remaining_data_length
CVE-2025-399439.4 CRITICALksmbd: smbdirect: validate data_offset and data_length field of smb_direct_data_transfer
CVE-2023-536009.1 CRITICALtunnels: fix kasan splat when generating ipv4 pmtu error
CVE-2023-536158.8 HIGHscsi: qla2xxx: Fix deletion race condition
CVE-2025-399528.8 HIGHwifi: wilc1000: avoid buffer overflow in WID string configuration
CVE-2023-535898.8 HIGHwifi: iwlwifi: mvm: don't trust firmware n_channels
CVE-2023-535868.8 HIGHscsi: target: Fix multiple LUN_RESET handling
CVE-2022-504938.8 HIGHscsi: qla2xxx: Fix crash when I/O abort times out
CVE-2023-535988.4 HIGHbus: mhi: host: Range check CHDBOFF and ERDBOFF
CVE-2023-535667.8 HIGHnetfilter: nft_set_rbtree: fix null deref on element insertion
CVE-2023-535367.8 HIGHblk-crypto: make blk_crypto_evict_key() more robust
CVE-2023-535607.8 HIGHtracing/histograms: Add histograms to hist_vars if they have referenced variables
CVE-2023-535597.8 HIGHip_vti: fix potential slab-use-after-free in decode_session6
CVE-2023-535577.8 HIGHfprobe: Release rethook after the ftrace_ops is unregistered
CVE-2023-535377.8 HIGHf2fs: fix to avoid use-after-free for cached IPU bio
CVE-2023-535397.8 HIGHRDMA/rxe: Fix incomplete state save in rxe_requester
CVE-2023-535457.8 HIGHdrm/amdgpu: unmap and remove csa_va properly

Showing 20 of 144 CVEs. View all on vendor page →

IV. 関連脆弱性

V. CVE-2023-53574へのコメント

まだコメントはありません


コメントを残す