A slab-out-of-bound read problem was found in brcmf_get_assoc_ies in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux Kernel. This issue could occur when assoc_info->req_len data is bigger than the size of the buffer, defined as WL_EXTRA_BUF_MAX, leading to a denial of service.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
DLA-3508-1 | linux security update |
![]() |
DLA-3623-1 | linux-5.10 security update |
![]() |
DSA-5480-1 | linux security update |
![]() |
EUVD-2023-23636 | A slab-out-of-bound read problem was found in brcmf_get_assoc_ies in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux Kernel. This issue could occur when assoc_info->req_len data is bigger than the size of the buffer, defined as WL_EXTRA_BUF_MAX, leading to a denial of service. |
![]() |
USN-6127-1 | Linux kernel vulnerabilities |
![]() |
USN-6130-1 | Linux kernel vulnerabilities |
![]() |
USN-6131-1 | Linux kernel vulnerabilities |
![]() |
USN-6132-1 | Linux kernel vulnerabilities |
![]() |
USN-6135-1 | Linux kernel (Azure CVM) vulnerabilities |
![]() |
USN-6149-1 | Linux kernel vulnerabilities |
![]() |
USN-6150-1 | Linux kernel vulnerabilities |
![]() |
USN-6162-1 | Linux kernel (Intel IoTG) vulnerabilities |
![]() |
USN-6173-1 | Linux kernel (OEM) vulnerabilities |
![]() |
USN-6175-1 | Linux kernel vulnerabilities |
![]() |
USN-6186-1 | Linux kernel vulnerabilities |
![]() |
USN-6222-1 | Linux kernel (Xilinx ZynqMP) vulnerabilities |
![]() |
USN-6256-1 | Linux kernel (IoT) vulnerabilities |
![]() |
USN-6385-1 | Linux kernel (OEM) vulnerabilities |
![]() |
USN-6460-1 | Linux kernel vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 16 Apr 2025 15:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | cpe:/a:redhat:enterprise_linux:9 cpe:/o:redhat:enterprise_linux:9 |

Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-02T05:49:10.358Z
Reserved: 2023-03-13T00:00:00
Link: CVE-2023-1380

No data.

Status : Modified
Published: 2023-03-27T21:15:10.623
Modified: 2024-11-21T07:39:04.247
Link: CVE-2023-1380


No data.