CVE-2023-52846

Source
https://nvd.nist.gov/vuln/detail/CVE-2023-52846
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-52846.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-52846
Downstream
Related
Published
2024-05-21T16:15:21Z
Modified
2025-08-09T19:01:27Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

In the Linux kernel, the following vulnerability has been resolved:

hsr: Prevent use after free in prpcreatetagged_frame()

The prpfillrct() function can fail. In that situation, it frees the skb and returns NULL. Meanwhile on the success path, it returns the original skb. So it's straight forward to fix bug by using the returned value.

References

Affected packages