CVE Database
/

CVE-2023-52840

Back to search

CVE-2023-52840

Published: May 21, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: Input: synaptics-rmi4 - fix use after free in rmi_unregister_function() The put_device() calls rmi_release_function() which frees "fn" so the dereference on the next line "fn->num_of_irqs" is a use after free. Move the put_device() to the end to fix this.

VendorProductVersions

Linux

Linux

affected
24d28e4f1271cb2f91613dada8f2acccd00eff56 - < 2f236d8638f5b43e0c72919a6a27fe286c32053f
affected
24d28e4f1271cb2f91613dada8f2acccd00eff56 - < 50d12253666195a14c6cd2b81c376e2dbeedbdff
affected
24d28e4f1271cb2f91613dada8f2acccd00eff56 - < 6c71e065befb2fae8f1461559b940c04e1071bd5
affected
24d28e4f1271cb2f91613dada8f2acccd00eff56 - < 303766bb92c5c225cf40f9bbbe7e29749406e2f2
affected
24d28e4f1271cb2f91613dada8f2acccd00eff56 - < 7082b1fb5321037bc11ba1cf2d7ed23c6b2b521f

+3 more versions

Linux

Linux

affected
4.18
unaffected
0 - < 4.18
unaffected
4.19.299 - <= 4.19.*
unaffected
5.4.261 - <= 5.4.*
unaffected
5.10.201 - <= 5.10.*

+5 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now