CVE-2023-47233: Use After Free
Last updated 25 April 2025
Other sources
The brcm80211 component in the Linux kernel through 6.5.10 has a brcmfcfg80211detach use-after-free in the device unplugging (disconnect the USB by hotplug) code. For physically proximate attackers with local access, this "could be exploited in a real world scenario." This is related to brcmfcfg80211escantimeoutworker in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c.
— Launchpad
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2023-47233?
CVE-2023-47233 is a vulnerability in the brcm80211 component in the Linux kernel through version 6.5.10, which allows for a use-after-free in the device unplugging code.
What is the severity of CVE-2023-47233?
The severity of CVE-2023-47233 is medium, with a CVSS score of 4.3.
How does CVE-2023-47233 impact affected systems?
CVE-2023-47233 can be exploited by physically proximate attackers with local access, making it a real-world threat.
Is there a fix available for CVE-2023-47233?
At the moment, there is no known fix or patch available for CVE-2023-47233. It is recommended to follow vendor advisories for updates.
What is the Common Weakness Enumeration (CWE) identifier for CVE-2023-47233?
The Common Weakness Enumeration (CWE) identifier for CVE-2023-47233 is CWE-416.