Use-After-Free Vulnerability in Linux Kernel Affects Renesas USB3 Driver
CVE-2023-35828
Key Information:
- Vendor
Linux
- Status
- Vendor
- CVE Published:
- 18 June 2023
Badges
What is CVE-2023-35828?
A use-after-free vulnerability has been identified in the Renesas USB3 driver within the Linux kernel prior to version 6.3.2. This weakness occurs in the 'renesas_usb3_remove' function found in 'drivers/usb/gadget/udc/renesas_usb3.c'. Exploitation of this vulnerability may allow an attacker to access previously freed memory, potentially leading to unauthorized access or system instability. It is crucial for users of affected Linux kernel versions to apply the necessary updates to mitigate associated risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.