-

CVE-2023-54084

In the Linux kernel, the following vulnerability has been resolved:

ALSA: firewire-digi00x: prevent potential use after free

This code was supposed to return an error code if init_stream()
failed, but it instead freed dg00x->rx_stream and returned success.
This potentially leads to a use after free.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version < 5009aead17f060753428e249eb0246eb1c2f8b86
Version 9a08067ec318cbeaf0caa2d104cf677e723e02a3
Status affected
Version < 13c5fa1248bf06e95a25907c1be83948b8c44c50
Version 9a08067ec318cbeaf0caa2d104cf677e723e02a3
Status affected
Version < bbb5ac533ca6c4e2775a95388c9c0c610bb442b7
Version 9a08067ec318cbeaf0caa2d104cf677e723e02a3
Status affected
Version < ee1a221d947809c0308f27567c07a3ac93406057
Version 9a08067ec318cbeaf0caa2d104cf677e723e02a3
Status affected
Version < 67148395efa2c1fb20e98fca359b20e7a6c81fe4
Version 9a08067ec318cbeaf0caa2d104cf677e723e02a3
Status affected
Version < c0e72058d5e21982e61a29de6b098f7c1f0db498
Version 9a08067ec318cbeaf0caa2d104cf677e723e02a3
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 5.4
Status affected
Version < 5.4
Version 0
Status unaffected
Version <= 5.4.*
Version 5.4.244
Status unaffected
Version <= 5.10.*
Version 5.10.181
Status unaffected
Version <= 5.15.*
Version 5.15.113
Status unaffected
Version <= 6.1.*
Version 6.1.30
Status unaffected
Version <= 6.3.*
Version 6.3.4
Status unaffected
Version <= *
Version 6.4
Status unaffected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.04% 0.1
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.