First published: Sat Mar 02 2024(Updated: )
In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: fix potential key use-after-free The Linux kernel CVE team has assigned <a href="https://access.redhat.com/security/cve/CVE-2023-52530">CVE-2023-52530</a> to this issue. Upstream advisory: <a href="https://lore.kernel.org/linux-cve-announce/2024030255-CVE-2023-52530-ebf0@gregkh/T/#u">https://lore.kernel.org/linux-cve-announce/2024030255-CVE-2023-52530-ebf0@gregkh/T/#u</a>
Credit: 416baaa9-dc9f-4396-8d5f-8c081fb06d67 416baaa9-dc9f-4396-8d5f-8c081fb06d67
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/kernel | <6.1.57 | 6.1.57 |
redhat/kernel | <6.5.7 | 6.5.7 |
redhat/kernel | <6.6 | 6.6 |
Linux Kernel | >=4.14<5.4.285 | |
Linux Kernel | >=5.5<5.10.288 | |
Linux Kernel | >=5.11<5.15.169 | |
Linux Kernel | >=5.16<6.1.57 | |
Linux Kernel | >=6.2<6.5.7 | |
Linux Kernel | =6.6-rc1 | |
Linux Kernel | =6.6-rc2 | |
Linux Kernel | =6.6-rc3 | |
Linux Kernel | =6.6-rc4 | |
debian/linux | <=5.10.223-1 | 5.10.234-1 6.1.129-1 6.1.128-1 6.12.21-1 |
IBM Security Verify Governance - Identity Manager | <=ISVG 10.0.2 | |
IBM Security Verify Governance, Identity Manager Software Stack | <=ISVG 10.0.2 | |
IBM Security Verify Governance, Identity Manager Virtual Appliance | <=ISVG 10.0.2 | |
IBM Security Verify Governance Identity Manager Container | <=ISVG 10.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-52530 is considered a moderate severity vulnerability due to its potential for a key use-after-free issue in the Linux kernel.
To address CVE-2023-52530, update your Linux kernel to at least version 6.1.57, 6.5.7, or 6.6.
CVE-2023-52530 affects multiple Linux kernel versions, specifically those prior to 6.1.57, 6.5.7, and 6.6.
CVE-2023-52530 could potentially be exploited remotely, depending on the context in which the vulnerable kernel is used.
As of now, there are no publicly available exploits specifically targeting CVE-2023-52530.