Lucene search

K
ubuntucveUbuntu.comUB:CVE-2023-52846
HistoryMay 21, 2024 - 12:00 a.m.

CVE-2023-52846

2024-05-2100:00:00
ubuntu.com
ubuntu.com
linux kernel
vulnerability
cve-2023-52846
hsr
prevent use after free
prp_create_tagged_frame
prp_fill_rct
skb
null
bug fix

6.8 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

10.3%

In the Linux kernel, the following vulnerability has been resolved: hsr:
Prevent use after free in prp_create_tagged_frame() The prp_fill_rct()
function can fail. In that situation, it frees the skb and returns NULL.
Meanwhile on the success path, it returns the original skb. So it’s
straight forward to fix bug by using the returned value.

6.8 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

10.3%

Related for UB:CVE-2023-52846