Vulnerabilities > CVE-2023-3159 - Use After Free vulnerability in Linux Kernel

047910
CVSS 6.7 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
linux
CWE-416

Summary

A use after free issue was discovered in driver/firewire in outbound_phy_packet_callback in the Linux Kernel. In this flaw a local attacker with special privilege may cause a use after free problem when queue_event() fails.

Vulnerable Configurations

Part Description Count
OS
Linux
5216

Common Weakness Enumeration (CWE)