A use-after-free vulnerability was found in the cyttsp4_core driver in the Linux kernel. This issue occurs in the device cleanup routine due to a possible rearming of the watchdog_timer from the workqueue. This could allow a local user to crash the system, causing a denial of service.
History

Mon, 18 Nov 2024 22:30:00 +0000

Type Values Removed Values Added
First Time appeared Fedoraproject
Fedoraproject fedora
Linux
Linux linux Kernel
CPEs cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Fedoraproject
Fedoraproject fedora
Linux
Linux linux Kernel

Thu, 14 Nov 2024 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 14 Nov 2024 11:00:00 +0000

Type Values Removed Values Added
Title kernel: cyttsp4_core: use-after-free in cyttsp4_watchdog_work() Kernel: cyttsp4_core: use-after-free in cyttsp4_watchdog_work()
First Time appeared Redhat
Redhat enterprise Linux
CPEs cpe:/o:redhat:enterprise_linux:6
cpe:/o:redhat:enterprise_linux:7
cpe:/o:redhat:enterprise_linux:8
cpe:/o:redhat:enterprise_linux:9
Vendors & Products Redhat
Redhat enterprise Linux
References

cve-icon MITRE

Status: PUBLISHED

Assigner: fedora

Published: 2024-11-14T10:44:42.864Z

Updated: 2024-11-14T19:34:19.393Z

Reserved: 2023-08-03T09:50:51.782Z

Link: CVE-2023-4134

cve-icon Vulnrichment

Updated: 2024-11-14T18:54:29.886Z

cve-icon NVD

Status : Analyzed

Published: 2024-11-14T11:15:03.730

Modified: 2024-11-18T22:08:54.803

Link: CVE-2023-4134

cve-icon Redhat

Severity : Moderate

Publid Date: 2023-04-21T00:00:00Z

Links: CVE-2023-4134 - Bugzilla