CVE-2023-1118: Linux Kernel
High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.
A flaw use after free in the Linux kernel integrated infrared receiver/transceiver driver was found in the way user detaching rc device. A local user could use this flaw to crash the system or potentially escalate their privileges on the system.
Affected products
- Linux Linux Kernel: from 2.6.36, before 4.14.308 (fixed in 4.14.308); from 4.15, before 4.19.276 (fixed in 4.19.276); from 4.20, before 5.4.235 (fixed in 5.4.235); from 5.5, before 5.10.173 (fixed in 5.10.173); from 5.11, before 5.15.99 (fixed in 5.15.99); from 5.16, before 6.1.16 (fixed in 6.1.16); …
Published 2023-03-02. Last modified 2026-06-17.