CVE-2023-4132: Debian Linux

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

A use-after-free vulnerability was found in the siano smsusb module in the Linux kernel. The bug occurs during device initialization when the siano device is plugged in. This flaw allows a local user to crash the system, causing a denial of service condition.

Affected products

  • Debian Debian Linux: version 10.0 only; version 11.0 only; version 12.0 only
  • Fedoraproject Fedora: affected versions not specified
  • Linux Linux Kernel: up to and including 6.2.16
  • Red Hat Enterprise Linux: version 8.0 only
  • Red Hat Enterprise Linux For Real Time: version 8.0 only
  • Red Hat Enterprise Linux For Real Time For Nfv: version 8.0 only

Published 2023-08-03. Last modified 2026-06-17.