← Back

CVE-2023-1855

nvd nist
Published: Apr 5, 2023Modified: Jun 17, 2026

JSON object

Loading...
6.3
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:H
Exploitability: 1.0 / Impact: 5.2
Source: NVD

Description

A use-after-free flaw was found in xgene_hwmon_remove in drivers/hwmon/xgene-hwmon.c in the Hardware Monitoring Linux Kernel Driver (xgene-hwmon). This flaw could allow a local attacker to crash the system due to a race problem. This vulnerability could even lead to a kernel information leak problem.

Affected (12)

1 product
Linux Kernel
1 product
Debian Linux
Configuration A
11 vulnerable
Vulnerable SoftwareAffected Versions
Linux
Before 6.3
From 4.15 to 4.19.279
From 4.20 to 5.4.238
From 4.9 to 4.14.311
From 5.11 to 5.15.104
From 5.16 to 6.1.21
From 5.5 to 5.10.176
From 6.2 to 6.2.8
Version 6.3 rc1
Version 6.3 rc2
Version 6.3 rc3
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 10.0

References (8)

Source: secalert@redhat.com
Mailing ListThird Party Advisory
Source: secalert@redhat.com
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory

Timeline

No history available yet.