A use-after-free vulnerability was found in the cxgb4 driver in the Linux kernel. The bug occurs when the cxgb4 device is detaching due to a possible rearming of the flower_stats_timer from the work queue. This flaw allows a local user to crash the system, causing a denial of service condition.
References
| Link | Resource |
|---|---|
| https://bugzilla.redhat.com/show_bug.cgi?id=2221702 | Issue Tracking |
| https://access.redhat.com/security/cve/CVE-2023-4133 | Vendor Advisory |
Information
Published : 2023-08-03 15:15
Updated : 2023-08-08 14:29
NVD link : CVE-2023-4133
Mitre link : CVE-2023-4133
JSON object : View
Products Affected
linux
- linux_kernel
fedoraproject
- fedora
redhat
- enterprise_linux
CWE
CWE-416
Use After Free
