Vulnerability CVE-2023-25012


Published: 2023-02-02

Description:
The Linux kernel through 6.1.9 has a Use-After-Free in bigben_remove in drivers/hid/hid-bigbenff.c via a crafted USB device because the LED controllers remain registered for too long.

 References:
https://seclists.org/oss-sec/2023/q1/53
https://lore.kernel.org/all/20230125-hid-unregister-leds-v1-1-9a5192dcef16@diag.uniroma1.it/

Copyright 2024, cxsecurity.com

 

Back to Top