-

CVE-2023-54083

In the Linux kernel, the following vulnerability has been resolved:

phy: tegra: xusb: Clear the driver reference in usb-phy dev

For the dual-role port, it will assign the phy dev to usb-phy dev and
use the port dev driver as the dev driver of usb-phy.

When we try to destroy the port dev, it will destroy its dev driver
as well. But we did not remove the reference from usb-phy dev. This
might cause the use-after-free issue in KASAN.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version < b6a107c52073496d2e5d2837915f59fb3103832f
Version e8f7d2f409a15c519d5a6085777d85c1c4bab73a
Status affected
Version < b84998a407a882991916b1a61d987c400d8a0ce6
Version e8f7d2f409a15c519d5a6085777d85c1c4bab73a
Status affected
Version < 238edc04ddb9d272b38f5419bcd419ad3b92b91b
Version e8f7d2f409a15c519d5a6085777d85c1c4bab73a
Status affected
Version < 82187460347ad58fd6b06d2883da73c3f2df9631
Version e8f7d2f409a15c519d5a6085777d85c1c4bab73a
Status affected
Version < c0c2fcb1325d0d4f3b322b5ee49385f8eca2560d
Version e8f7d2f409a15c519d5a6085777d85c1c4bab73a
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 5.7
Status affected
Version < 5.7
Version 0
Status unaffected
Version <= 5.10.*
Version 5.10.188
Status unaffected
Version <= 5.15.*
Version 5.15.121
Status unaffected
Version <= 6.1.*
Version 6.1.39
Status unaffected
Version <= 6.4.*
Version 6.4.4
Status unaffected
Version <= *
Version 6.5
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.03% 0.065
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.