CVE-2023-3159: Linux Kernel

Medium severity, CVSS 6.7. EPSS: 0.2% chance of exploitation in the next 30 days.

A use after free issue was discovered in driver/firewire in outbound_phy_packet_callback in the Linux Kernel. In this flaw a local attacker with special privilege may cause a use after free problem when queue_event() fails.

Affected products

  • Linux Linux Kernel: before 5.18 (fixed in 5.18); version 5.18 only

Published 2023-06-12. Last modified 2026-06-17.