First published: Fri Jan 13 2023(Updated: )
In rndis_query_oid in drivers/net/wireless/rndis_wlan.c in the Linux kernel through 6.1.5, there is an integer overflow in an addition.
Credit: cve@mitre.org cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | >=2.6.35<4.14.305 | |
Linux Kernel | >=4.15<4.19.272 | |
Linux Kernel | >=4.20<5.4.231 | |
Linux Kernel | >=5.5<5.10.166 | |
Linux Kernel | >=5.11<5.15.91 | |
Linux Kernel | >=5.16<6.1.9 | |
netapp hci baseboard management controller | =h300s | |
netapp hci baseboard management controller | =h410c | |
netapp hci baseboard management controller | =h410s | |
netapp hci baseboard management controller | =h500s | |
netapp hci baseboard management controller | =h700s | |
Debian Debian Linux | =10.0 | |
debian/linux | 5.10.223-1 5.10.226-1 6.1.123-1 6.1.119-1 6.12.11-1 6.12.12-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-23559 has been classified with a severity level that indicates it can lead to potential exploitation due to an integer overflow.
To fix CVE-2023-23559, upgrade to the latest Linux kernel versions such as 5.10.223-1, 6.1.123-1, or later patched versions.
CVE-2023-23559 can lead to stability issues or undefined behavior due to the integer overflow in the Linux kernel affecting wireless drivers.
If you are using Linux kernel versions up to 6.1.5, your system is potentially affected by CVE-2023-23559.
To identify CVE-2023-23559, check your kernel version against the vulnerable ranges and apply the relevant patches if necessary.