Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-47233
HistoryNov 03, 2023 - 9:15 p.m.

Double free

2023-11-0321:15:00
PRIOn knowledge base
www.prio-n.com
15
brcm80211
linux kernel
use-after-free
device unplugging
real world exploitation
physically proximate attackers
local access
nvd

4.2 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

The brcm80211 component in the Linux kernel through 6.5.10 has a brcmf_cfg80211_detach use-after-free in the device unplugging (disconnect the USB by hotplug) code. For physically proximate attackers with local access, this “could be exploited in a real world scenario.” This is related to brcmf_cfg80211_escan_timeout_worker in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c.

CPENameOperatorVersion
linux_kernelle6.5.10

4.2 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%