CVE-2023-53028

CVSS 3.1 Score 5.5 of 10 (medium)

Details

Published Mar 27, 2025
Updated: Apr 15, 2025
CWE ID 401

Summary

CVE-2023-53028 involves a memory leak issue in the Linux kernel that was resolved by reverting a commit related to the mac80211 driver. The vulnerability was reported to cause a null pointer dereference, potentially leading to a kernel crash, as evidenced by a stack trace and a hardware report from Google Compute Engine. This issue arose due to the fact that ieee80211_if_free() was already called when freeing a network device, causing the memory leak to go unaddressed. The vulnerability could potentially be exploited by an attacker to execute arbitrary code on the affected system.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share