Rewterz
Rewterz Threat Alert – Chaos Ransomware – Active IOCs
February 3, 2023
Rewterz
Rewterz Threat Alert – North Korean APT Kimsuky Aka Black Banshee – Active IOCs
February 3, 2023

Rewterz Threat Advisory – CVE-2023-25012 – Linux Kernel Vulnerability

Severity

Medium

Analysis Summary

CVE-2023-25012 

Linux Kernel is vulnerable to a denial of service, caused by a use-after-free in bigben_remove in drivers/hid/hid-bigbenff.c. By attaching a specially crafted USB device to the system, a local attacker could exploit this vulnerability to cause a denial of service.

Impact

  • Denial of Service

Indicators Of Compromise

CVE

  • CVE-2023-25012

Affected Vendors

Linux

Affected Products

  • Linux Kernel

Remediation

Refer to Linux Kernel Archives Website for patch, upgrade or suggested workaround information. 

Linux Kernel Archives Website