CVE-2023-53574
Linux Kernel vulnerability analysis and mitigation

Overview

CVE-2023-53574 is a vulnerability in the Linux kernel's rtw88 WiFi driver, discovered and disclosed on October 4, 2025. The vulnerability affects various Linux distributions and their kernel versions, particularly impacting systems using the rtw88 wireless driver (NVD, Ubuntu).

Technical details

The vulnerability involves a potential crash and memory leak condition in the rtw88 WiFi driver during driver unload operations. The issue occurs specifically when unloading or unbinding the driver, where a pending TX-purge timer and non-purged queues could continue to run after their associated structures were freed, leading to Use-After-Free (UAF) conditions and potential system crashes. The vulnerability has been assigned a CVSS v3.1 base score with vector AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H, indicating local access requirements and high privileges needed for exploitation (Red Hat).

Impact

The vulnerability's impact is primarily focused on system stability and reliability. When exploited, it can cause system crashes and memory leaks during the WiFi driver unload process. The issue requires local access and elevated privileges to exploit, which somewhat limits its potential impact (Red Hat).

Mitigation and workarounds

The vulnerability has been resolved in the Linux kernel through fixes that properly handle the deletion of TX purge timer and freeing of SKB queue when unloading. The fix includes deleting the TX purge timer and freeing C2H queue in 'rtwcoredeinit()', as well as shrinking the critical section by freeing COEX queue out of TX report lock scope (NVD).

Additional resources


SourceThis report was generated using AI

Related Linux Kernel vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2025-40205HIGH7.8
  • Linux KernelLinux Kernel
  • linux-azure-6.14
NoYesNov 12, 2025
CVE-2025-40211HIGH7.1
  • Linux KernelLinux Kernel
  • linux-gcp-5.15
NoYesNov 21, 2025
CVE-2025-40206MEDIUM5.5
  • Linux KernelLinux Kernel
  • linux-raspi
NoYesNov 12, 2025
CVE-2025-40210MEDIUM5.1
  • Linux KernelLinux Kernel
  • linux-realtime
NoYesNov 21, 2025
CVE-2025-40212N/AN/A
  • Linux KernelLinux Kernel
  • kernel-rt-64k-modules
NoYesNov 24, 2025

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management