Impact
The vulnerability is a memory leak in the rtl8723bs driver of the Linux kernel. When certain management frames trigger error paths, allocated transmission frames and buffers are not returned to the free pool, leading to progressively exhausted resources. This exhaustion disables the interface’s ability to send beacons and probe responses, effectively disconnecting clients and rendering the Wi‑Fi interface unusable. The weakness is a resource‑management flaw that meets the description of CWE‑772.
Affected Systems
Any system running a Linux kernel that includes the rtl8723bs driver within its staging area is affected. No specific kernel version is listed in the advisory, so all builds that contain the unpatched driver are potentially vulnerable.
Risk and Exploitability
The flaw has no public exploitation evidence and is not listed in the CISA KEV catalog. The EPSS score is unavailable. An attacker would need to craft and transmit specific wireless management frames that trigger the edge error paths, which requires wireless proximity or control over the target device’s radio. While the probability of widespread exploitation is low, the impact—complete denial of Wi‑Fi service—remains high once the pools are exhausted.
OpenCVE Enrichment