CVE-2023-53321

HIGH

Linux Kernel < 5.4.257 - Denial of Service via Short Frame Handling in mac80211_hwsim

Title source: llm
STIX 2.1

Description

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211_hwsim: drop short frames While technically some control frames like ACK are shorter and end after Address 1, such frames shouldn't be forwarded through wmediumd or similar userspace, so require the full 3-address header to avoid accessing invalid memory if shorter frames are passed in.

Scores

CVSS v3 7.1
EPSS 0.0014
EPSS Percentile 3.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

Status published
Products (20)
linux/Kernel 5.11.0 - 5.15.133linux
linux/Kernel 5.16.0 - 6.1.55linux
linux/Kernel 5.4.0 - 5.4.257linux
linux/Kernel 5.5.0 - 5.10.197linux
linux/Kernel 6.2.0 - 6.5.5linux
Linux/Linux < 5.4
Linux/Linux 05d610af3e71a782fa28a1351b687da982d208ee - 3beb97bed860d95b14ad23578ce8ddaea62023db
Linux/Linux 05d610af3e71a782fa28a1351b687da982d208ee - 672205c6f2d11978fcd7f0f336bb2c708e28874b
Linux/Linux 05d610af3e71a782fa28a1351b687da982d208ee - 89a41ed7f21476301659ebd25ccb48a60791c1a7
Linux/Linux 05d610af3e71a782fa28a1351b687da982d208ee - b9a175e3b250b0dc6e152988040aa5014e98e61e
... and 10 more
Published Sep 16, 2025
Tracked Since Feb 18, 2026