CVE-2023-52594
HighIn the Linux kernel, the following vulnerability has been resolved: wifi: ath9k: Fix potential array-index-out-of-bounds read in ath9k_htc_txstatus() Fix an array-index-out-of-bounds read in ath9k_htc_txstatus(). The bug occurs when txs->cnt, data from a URB provided by a USB device, is bigger than the size of the array txs->txstatus, which is HTC_MAX_TX_STATUS. WARN_ON() already checks it, but there is no bug handling code after the check. Make the function return if that is the case. Found by a modified version of syzkaller. UBSAN: array-index-out-of-bounds in htc_drv_txrx.c index 13 is out of range for type '__wmi_event_txstatus [12]' Call Trace: ath9k_htc_txstatus ath9k_wmi_event_tasklet tasklet_action_common __do_softirq irq_exit_rxu sysvec_apic_timer_interrupt
CVSS 3.1 score
7.8
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weakness type
CWE-129CVE-2023-52594 is classified as CWE-129
See CWE-129 on MITRE CWE for full details on this weakness type.
References
The following references provide additional information about CVE-2023-52594 including vendor advisories, patch commits, exploit details, and third-party analysis. Links are sourced from the NIST NVD database.
-
PatchKernel patch commithttps://git.kernel.org/stable/c/25c6f49ef59b7a9b80a3f7ab9e95268a1b01a234
-
PatchKernel patch commithttps://git.kernel.org/stable/c/2adc886244dff60f948497b59affb6c6ebb3c348
-
PatchKernel patch commithttps://git.kernel.org/stable/c/84770a996ad8d7f121ff2fb5a8d149aad52d64c1
Frequently asked questions
-
What is CVE-2023-52594?
CVE-2023-52594 is a High severity Linux kernel vulnerability with a CVSS score of 7.8 out of 10 . CVE-2023-52594 has not been confirmed as actively exploited and is not listed in the CISA KEV catalog.
-
What is the CVSS score for CVE-2023-52594?
CVE-2023-52594 has a CVSS score of 7.8 out of 10, rated High severity (CVSS 3.1). The vector string is
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H. -
Is there a patch available for CVE-2023-52594?
No patch is currently available for CVE-2023-52594. Monitor the NIST NVD and your Linux distribution's security advisories for updates.
-
Is CVE-2023-52594 actively exploited?
No — CVE-2023-52594 has not been confirmed as actively exploited. It is not listed in the CISA Known Exploited Vulnerabilities (KEV) catalog.