CVE-2023-25012

Updated: 2024-11-23 02:45:52.671008

Description:

The Linux kernel through 6.1.9 has a Use-After-Free in bigben_remove in drivers/hid/hid-bigbenff.c via a crafted USB device because the LED controllers remain registered for too long.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0
CVSS Version 3.x MEDIUM 4.6

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU kernel 5.14.0 4.6 MEDIUM Ignored 2023-11-08 04:07:23
AlmaLinux 9.2 FIPS kernel 5.14.0 4.6 MEDIUM Ignored 2023-11-21 04:11:59
CentOS 6 ELS kernel 2.6.32 4.6 MEDIUM Ignored 2023-02-10 02:08:33
CentOS 7 ELS kernel 3.10.0 4.6 MEDIUM Ignored 2023-09-19 05:07:29
CentOS 8.4 ELS kernel 4.18.0 4.6 MEDIUM Ignored 2023-02-10 02:08:32
CentOS 8.5 ELS kernel 4.18.0 4.6 MEDIUM Ignored 2023-02-10 02:08:33
CloudLinux 6 ELS kernel 2.6.32 4.6 MEDIUM Ignored 2023-02-10 02:08:33
Oracle Linux 6 ELS kernel 2.6.32 4.6 MEDIUM Ignored 2023-02-10 04:03:19
Ubuntu 16.04 ELS linux-hwe 4.15.0 4.6 MEDIUM Ignored 2023-02-10 02:08:33
Ubuntu 16.04 ELS linux 4.4.0 4.6 MEDIUM Ignored 2023-02-10 04:03:19
Total: 11