[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2023-52637":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T14:53:31.930Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":20,"aliases":21,"duplicate_of":9,"upstream":22,"downstream":23,"duplicates":64,"related":65,"reserved_at":9,"published_at":69,"modified_at":70,"state":71,"summary":72,"references_raw":81,"kevs":118,"epss":119,"epss_history":122,"metrics":381,"affected":387},"CVE-2023-52637","In the Linux kernel, the following vulnerability has been resolved:\n\ncan: j1939: Fix UAF in j1939_sk_match_filter during setsockopt(SO_J1939_FILTER)\n\nLock jsk->sk to prevent UAF when setsockopt(..., SO_J1939_FILTER, ...)\nmodifies jsk->filters while receiving packets.\n\nFollowing trace was seen on affected system:\n ==================================================================\n BUG: KASAN: slab-use-after-free in j1939_sk_recv_match_one+0x1af/0x2d0 [can_j1939]\n Read of size 4 at addr ffff888012144014 by task j1939/350\n\n CPU: 0 PID: 350 Comm: j1939 Tainted: G        W  OE      6.5.0-rc5 #1\n Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.13.0-1ubuntu1.1 04/01/2014\n Call Trace:\n  print_report+0xd3/0x620\n  ? kasan_complete_mode_report_info+0x7d/0x200\n  ? j1939_sk_recv_match_one+0x1af/0x2d0 [can_j1939]\n  kasan_report+0xc2/0x100\n  ? j1939_sk_recv_match_one+0x1af/0x2d0 [can_j1939]\n  __asan_load4+0x84/0xb0\n  j1939_sk_recv_match_one+0x1af/0x2d0 [can_j1939]\n  j1939_sk_recv+0x20b/0x320 [can_j1939]\n  ? __kasan_check_write+0x18/0x20\n  ? __pfx_j1939_sk_recv+0x10/0x10 [can_j1939]\n  ? j1939_simple_recv+0x69/0x280 [can_j1939]\n  ? j1939_ac_recv+0x5e/0x310 [can_j1939]\n  j1939_can_recv+0x43f/0x580 [can_j1939]\n  ? __pfx_j1939_can_recv+0x10/0x10 [can_j1939]\n  ? raw_rcv+0x42/0x3c0 [can_raw]\n  ? __pfx_j1939_can_recv+0x10/0x10 [can_j1939]\n  can_rcv_filter+0x11f/0x350 [can]\n  can_receive+0x12f/0x190 [can]\n  ? __pfx_can_rcv+0x10/0x10 [can]\n  can_rcv+0xdd/0x130 [can]\n  ? __pfx_can_rcv+0x10/0x10 [can]\n  __netif_receive_skb_one_core+0x13d/0x150\n  ? __pfx___netif_receive_skb_one_core+0x10/0x10\n  ? __kasan_check_write+0x18/0x20\n  ? _raw_spin_lock_irq+0x8c/0xe0\n  __netif_receive_skb+0x23/0xb0\n  process_backlog+0x107/0x260\n  __napi_poll+0x69/0x310\n  net_rx_action+0x2a1/0x580\n  ? __pfx_net_rx_action+0x10/0x10\n  ? __pfx__raw_spin_lock+0x10/0x10\n  ? handle_irq_event+0x7d/0xa0\n  __do_softirq+0xf3/0x3f8\n  do_softirq+0x53/0x80\n  \u003C/IRQ>\n  \u003CTASK>\n  __local_bh_enable_ip+0x6e/0x70\n  netif_rx+0x16b/0x180\n  can_send+0x32b/0x520 [can]\n  ? __pfx_can_send+0x10/0x10 [can]\n  ? __check_object_size+0x299/0x410\n  raw_sendmsg+0x572/0x6d0 [can_raw]\n  ? __pfx_raw_sendmsg+0x10/0x10 [can_raw]\n  ? apparmor_socket_sendmsg+0x2f/0x40\n  ? __pfx_raw_sendmsg+0x10/0x10 [can_raw]\n  sock_sendmsg+0xef/0x100\n  sock_write_iter+0x162/0x220\n  ? __pfx_sock_write_iter+0x10/0x10\n  ? __rtnl_unlock+0x47/0x80\n  ? security_file_permission+0x54/0x320\n  vfs_write+0x6ba/0x750\n  ? __pfx_vfs_write+0x10/0x10\n  ? __fget_light+0x1ca/0x1f0\n  ? __rcu_read_unlock+0x5b/0x280\n  ksys_write+0x143/0x170\n  ? __pfx_ksys_write+0x10/0x10\n  ? __kasan_check_read+0x15/0x20\n  ? fpregs_assert_state_consistent+0x62/0x70\n  __x64_sys_write+0x47/0x60\n  do_syscall_64+0x60/0x90\n  ? do_syscall_64+0x6d/0x90\n  ? irqentry_exit+0x3f/0x50\n  ? exc_page_fault+0x79/0xf0\n  entry_SYSCALL_64_after_hwframe+0x6e/0xd8\n\n Allocated by task 348:\n  kasan_save_stack+0x2a/0x50\n  kasan_set_track+0x29/0x40\n  kasan_save_alloc_info+0x1f/0x30\n  __kasan_kmalloc+0xb5/0xc0\n  __kmalloc_node_track_caller+0x67/0x160\n  j1939_sk_setsockopt+0x284/0x450 [can_j1939]\n  __sys_setsockopt+0x15c/0x2f0\n  __x64_sys_setsockopt+0x6b/0x80\n  do_syscall_64+0x60/0x90\n  entry_SYSCALL_64_after_hwframe+0x6e/0xd8\n\n Freed by task 349:\n  kasan_save_stack+0x2a/0x50\n  kasan_set_track+0x29/0x40\n  kasan_save_free_info+0x2f/0x50\n  __kasan_slab_free+0x12e/0x1c0\n  __kmem_cache_free+0x1b9/0x380\n  kfree+0x7a/0x120\n  j1939_sk_setsockopt+0x3b2/0x450 [can_j1939]\n  __sys_setsockopt+0x15c/0x2f0\n  __x64_sys_setsockopt+0x6b/0x80\n  do_syscall_64+0x60/0x90\n  entry_SYSCALL_64_after_hwframe+0x6e/0xd8",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-416","Use After Free","The product reuses or references memory after it has been freed. At some point afterward, the memory may be allocated again and saved in another pointer, while the original pointer references a location somewhere within the new allocation. Any operations using the original pointer are no longer valid because the memory \"belongs\" to the code that operates on the new pointer.","weakness","Stable","Variant","High",[],[],[],[],[24,26,28,30,32,34,36,38,40,42,44,46,48,50,52,54,56,58,60,62],{"_key":25},"SUSE-SU-2024:1466-1",{"_key":27},"SUSE-SU-2024:1480-1",{"_key":29},"SUSE-SU-2024:1490-1",{"_key":31},"DLA-3842-1",{"_key":33},"DSA-5681-1",{"_key":35},"DEBIAN-CVE-2023-52637",{"_key":37},"RHSA-2024:9315",{"_key":39},"UBUNTU-CVE-2023-52637",{"_key":41},"USN-6766-1",{"_key":43},"USN-6766-2",{"_key":45},"USN-6766-3",{"_key":47},"USN-6767-1",{"_key":49},"USN-6767-2",{"_key":51},"USN-6795-1",{"_key":53},"USN-6828-1",{"_key":55},"USN-6895-1",{"_key":57},"USN-6895-2",{"_key":59},"USN-6895-3",{"_key":61},"USN-6895-4",{"_key":63},"USN-6900-1",[],[66,67,68],{"_key":25},{"_key":27},{"_key":29},"2024-04-03T14:54:40.262Z","2026-05-11T19:30:49.040Z","Analyzed",{"cisa_kev":73,"cisa_ransomware":73,"cisa_vendor":9,"epss_severity":74,"epss_score":75,"severity":76,"severity_score":77,"severity_version":78,"severity_source":79,"severity_vector":80,"severity_status":71},false,"low",0.00011,"high",7.8,"v3.1","nvd","CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",[82,88,92,96,100,104,108,112],{"url":83,"sources":84,"tags":86},"https://git.kernel.org/stable/c/08de58abedf6e69396e1207e4f99ef8904b2b532",[85,79],"cve.org",[87],"Patch",{"url":89,"sources":90,"tags":91},"https://git.kernel.org/stable/c/978e50ef8c38dc71bd14d1b0143d554ff5d188ba",[85,79],[87],{"url":93,"sources":94,"tags":95},"https://git.kernel.org/stable/c/41ccb5bcbf03f02d820bc6ea8390811859f558f8",[85,79],[87],{"url":97,"sources":98,"tags":99},"https://git.kernel.org/stable/c/4dd684d4bb3cd5454e0bf6e2a1bdfbd5c9c872ed",[85,79],[87],{"url":101,"sources":102,"tags":103},"https://git.kernel.org/stable/c/f84e7534457dcd7835be743517c35378bb4e7c50",[85,79],[87],{"url":105,"sources":106,"tags":107},"https://git.kernel.org/stable/c/fc74b9cb789cae061bbca7b203a3842e059f6b5d",[85,79],[87],{"url":109,"sources":110,"tags":111},"https://git.kernel.org/stable/c/efe7cf828039aedb297c1f9920b638fffee6aabc",[85,79],[87],{"url":113,"sources":114,"tags":115},"https://lists.debian.org/debian-lts-announce/2024/06/msg00017.html",[85,79],[116,117],"X Transferred","Mailing List",[],{"date":120,"score":75,"percentile":121},"2026-06-04",0.01528,[123,127,130,133,136,139,141,144,147,150,152,155,158,161,164,168,171,174,177,180,183,186,189,192,195,198,201,204,207,210,213,215,218,221,223,225,228,231,234,237,240,242,245,247,249,252,254,257,261,264,267,270,273,276,279,282,284,287,290,293,296,299,302,305,308,311,314,317,320,323,326,329,332,335,338,341,344,347,350,353,355,358,360,363,365,368,370,373,375,378],{"date":124,"score":125,"percentile":126},"2025-11-04",0.00012,0.01235,{"date":128,"score":125,"percentile":129},"2025-11-05",0.01255,{"date":131,"score":125,"percentile":132},"2025-11-06",0.01268,{"date":134,"score":125,"percentile":135},"2025-11-07",0.01271,{"date":137,"score":125,"percentile":138},"2025-11-08",0.01273,{"date":140,"score":125,"percentile":135},"2025-11-09",{"date":142,"score":125,"percentile":143},"2025-11-10",0.01261,{"date":145,"score":125,"percentile":146},"2025-11-11",0.01266,{"date":148,"score":125,"percentile":149},"2025-11-12",0.01267,{"date":151,"score":125,"percentile":138},"2025-11-13",{"date":153,"score":125,"percentile":154},"2025-11-14",0.01287,{"date":156,"score":125,"percentile":157},"2025-11-15",0.01302,{"date":159,"score":125,"percentile":160},"2025-11-16",0.01301,{"date":162,"score":125,"percentile":163},"2025-11-17",0.01293,{"date":165,"score":166,"percentile":167},"2025-11-18",0.00092,0.22324,{"date":169,"score":166,"percentile":170},"2025-11-19",0.22334,{"date":172,"score":166,"percentile":173},"2025-11-20",0.22341,{"date":175,"score":125,"percentile":176},"2025-11-21",0.01346,{"date":178,"score":125,"percentile":179},"2025-11-22",0.01344,{"date":181,"score":125,"percentile":182},"2025-11-23",0.01332,{"date":184,"score":125,"percentile":185},"2025-11-24",0.01326,{"date":187,"score":125,"percentile":188},"2025-11-25",0.01321,{"date":190,"score":125,"percentile":191},"2025-11-26",0.0126,{"date":193,"score":125,"percentile":194},"2025-11-27",0.01258,{"date":196,"score":125,"percentile":197},"2025-11-28",0.01263,{"date":199,"score":125,"percentile":200},"2025-11-29",0.01299,{"date":202,"score":125,"percentile":203},"2025-11-30",0.01308,{"date":205,"score":125,"percentile":206},"2025-12-01",0.01335,{"date":208,"score":125,"percentile":209},"2025-12-02",0.01331,{"date":211,"score":125,"percentile":212},"2025-12-03",0.01333,{"date":214,"score":125,"percentile":203},"2025-12-04",{"date":216,"score":125,"percentile":217},"2025-12-05",0.01324,{"date":219,"score":125,"percentile":220},"2025-12-06",0.01328,{"date":222,"score":125,"percentile":185},"2025-12-07",{"date":224,"score":125,"percentile":185},"2025-12-08",{"date":226,"score":125,"percentile":227},"2025-12-09",0.01339,{"date":229,"score":125,"percentile":230},"2025-12-10",0.01351,{"date":232,"score":125,"percentile":233},"2025-12-11",0.01342,{"date":235,"score":125,"percentile":236},"2025-12-12",0.01341,{"date":238,"score":125,"percentile":239},"2025-12-13",0.01327,{"date":241,"score":125,"percentile":185},"2025-12-14",{"date":243,"score":125,"percentile":244},"2025-12-15",0.01323,{"date":246,"score":125,"percentile":220},"2025-12-16",{"date":248,"score":125,"percentile":220},"2025-12-17",{"date":250,"score":125,"percentile":251},"2025-12-18",0.01318,{"date":253,"score":125,"percentile":244},"2025-12-19",{"date":255,"score":125,"percentile":256},"2025-12-20",0.01322,{"date":258,"score":259,"percentile":260},"2025-12-21",0.00015,0.02457,{"date":262,"score":259,"percentile":263},"2025-12-22",0.02454,{"date":265,"score":259,"percentile":266},"2025-12-23",0.0246,{"date":268,"score":259,"percentile":269},"2025-12-24",0.02468,{"date":271,"score":259,"percentile":272},"2025-12-25",0.02474,{"date":274,"score":259,"percentile":275},"2025-12-26",0.02477,{"date":277,"score":259,"percentile":278},"2025-12-27",0.02466,{"date":280,"score":259,"percentile":281},"2025-12-28",0.02475,{"date":283,"score":259,"percentile":278},"2025-12-29",{"date":285,"score":259,"percentile":286},"2025-12-30",0.02463,{"date":288,"score":259,"percentile":289},"2025-12-31",0.02451,{"date":291,"score":259,"percentile":292},"2026-01-01",0.02515,{"date":294,"score":259,"percentile":295},"2026-01-02",0.02519,{"date":297,"score":259,"percentile":298},"2026-01-03",0.02518,{"date":300,"score":259,"percentile":301},"2026-01-04",0.02448,{"date":303,"score":259,"percentile":304},"2026-01-05",0.02455,{"date":306,"score":259,"percentile":307},"2026-01-06",0.02444,{"date":309,"score":259,"percentile":310},"2026-01-07",0.02461,{"date":312,"score":259,"percentile":313},"2026-01-08",0.02486,{"date":315,"score":259,"percentile":316},"2026-01-09",0.025,{"date":318,"score":75,"percentile":319},"2026-01-10",0.01105,{"date":321,"score":75,"percentile":322},"2026-01-11",0.01103,{"date":324,"score":75,"percentile":325},"2026-01-12",0.01109,{"date":327,"score":75,"percentile":328},"2026-01-13",0.01106,{"date":330,"score":75,"percentile":331},"2026-01-14",0.01104,{"date":333,"score":75,"percentile":334},"2026-01-15",0.01117,{"date":336,"score":75,"percentile":337},"2026-01-16",0.01121,{"date":339,"score":75,"percentile":340},"2026-01-17",0.01124,{"date":342,"score":75,"percentile":343},"2026-01-18",0.01135,{"date":345,"score":75,"percentile":346},"2026-01-19",0.01133,{"date":348,"score":75,"percentile":349},"2026-01-20",0.01119,{"date":351,"score":75,"percentile":352},"2026-01-21",0.01115,{"date":354,"score":75,"percentile":349},"2026-01-22",{"date":356,"score":75,"percentile":357},"2026-01-23",0.01131,{"date":359,"score":75,"percentile":357},"2026-01-24",{"date":361,"score":75,"percentile":362},"2026-01-25",0.0113,{"date":364,"score":75,"percentile":357},"2026-01-26",{"date":366,"score":75,"percentile":367},"2026-01-27",0.01122,{"date":369,"score":75,"percentile":337},"2026-01-28",{"date":371,"score":75,"percentile":372},"2026-01-29",0.01127,{"date":374,"score":75,"percentile":362},"2026-01-30",{"date":376,"score":75,"percentile":377},"2026-01-31",0.01144,{"date":379,"score":75,"percentile":380},"2026-02-01",0.01166,[382],{"source":79,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":383,"cvss_v4_0":9},{"baseScore":77,"baseSeverity":384,"vectorString":80,"impactScore":385,"exploitabilityScore":386},"HIGH",9.8,4.6,[388,397,429],{"ecosystem":9,"name":389,"vendor":390,"product":391,"cpe_part":392,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":393},"debian linux","debian","debian_linux","o",[394],{"version":395,"is_range":73,"range_type":396,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"10.0","cpe",{"ecosystem":9,"name":398,"vendor":399,"product":399,"cpe_part":400,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":401},"Linux","linux","a",[402,409,412,415,418,421,424,427],{"version":403,"is_range":404,"range_type":85,"version_start":405,"version_start_type":406,"version_end":407,"version_end_type":408,"fixed_in":9},">= 9d71dd0c70099914fcd063135da3c580865e924c, \u003C 08de58abedf6e69396e1207e4f99ef8904b2b532",true,"9d71dd0c70099914fcd063135da3c580865e924c","including","08de58abedf6e69396e1207e4f99ef8904b2b532","excluding",{"version":410,"is_range":404,"range_type":85,"version_start":405,"version_start_type":406,"version_end":411,"version_end_type":408,"fixed_in":9},">= 9d71dd0c70099914fcd063135da3c580865e924c, \u003C 978e50ef8c38dc71bd14d1b0143d554ff5d188ba","978e50ef8c38dc71bd14d1b0143d554ff5d188ba",{"version":413,"is_range":404,"range_type":85,"version_start":405,"version_start_type":406,"version_end":414,"version_end_type":408,"fixed_in":9},">= 9d71dd0c70099914fcd063135da3c580865e924c, \u003C 41ccb5bcbf03f02d820bc6ea8390811859f558f8","41ccb5bcbf03f02d820bc6ea8390811859f558f8",{"version":416,"is_range":404,"range_type":85,"version_start":405,"version_start_type":406,"version_end":417,"version_end_type":408,"fixed_in":9},">= 9d71dd0c70099914fcd063135da3c580865e924c, \u003C 4dd684d4bb3cd5454e0bf6e2a1bdfbd5c9c872ed","4dd684d4bb3cd5454e0bf6e2a1bdfbd5c9c872ed",{"version":419,"is_range":404,"range_type":85,"version_start":405,"version_start_type":406,"version_end":420,"version_end_type":408,"fixed_in":9},">= 9d71dd0c70099914fcd063135da3c580865e924c, \u003C f84e7534457dcd7835be743517c35378bb4e7c50","f84e7534457dcd7835be743517c35378bb4e7c50",{"version":422,"is_range":404,"range_type":85,"version_start":405,"version_start_type":406,"version_end":423,"version_end_type":408,"fixed_in":9},">= 9d71dd0c70099914fcd063135da3c580865e924c, \u003C fc74b9cb789cae061bbca7b203a3842e059f6b5d","fc74b9cb789cae061bbca7b203a3842e059f6b5d",{"version":425,"is_range":404,"range_type":85,"version_start":405,"version_start_type":406,"version_end":426,"version_end_type":408,"fixed_in":9},">= 9d71dd0c70099914fcd063135da3c580865e924c, \u003C efe7cf828039aedb297c1f9920b638fffee6aabc","efe7cf828039aedb297c1f9920b638fffee6aabc",{"version":428,"is_range":73,"range_type":85,"version_start":428,"version_start_type":406,"version_end":428,"version_end_type":406,"fixed_in":9},"5.4",{"ecosystem":9,"name":430,"vendor":399,"product":431,"cpe_part":392,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":432},"linux kernel","linux_kernel",[433,436,440,444,448,452,456,458,460,462],{"version":434,"is_range":404,"range_type":396,"version_start":428,"version_start_type":406,"version_end":435,"version_end_type":408,"fixed_in":9},"gte5.4_lt5.4.269","5.4.269",{"version":437,"is_range":404,"range_type":396,"version_start":438,"version_start_type":406,"version_end":439,"version_end_type":408,"fixed_in":9},"gte5.5_lt5.10.210","5.5","5.10.210",{"version":441,"is_range":404,"range_type":396,"version_start":442,"version_start_type":406,"version_end":443,"version_end_type":408,"fixed_in":9},"gte5.11_lt5.15.149","5.11","5.15.149",{"version":445,"is_range":404,"range_type":396,"version_start":446,"version_start_type":406,"version_end":447,"version_end_type":408,"fixed_in":9},"gte5.16_lt6.1.79","5.16","6.1.79",{"version":449,"is_range":404,"range_type":396,"version_start":450,"version_start_type":406,"version_end":451,"version_end_type":408,"fixed_in":9},"gte6.2_lt6.6.18","6.2","6.6.18",{"version":453,"is_range":404,"range_type":396,"version_start":454,"version_start_type":406,"version_end":455,"version_end_type":408,"fixed_in":9},"gte6.7_lt6.7.6","6.7","6.7.6",{"version":457,"is_range":73,"range_type":396,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"6.8:rc1",{"version":459,"is_range":73,"range_type":396,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"6.8:rc2",{"version":461,"is_range":73,"range_type":396,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"6.8:rc3",{"version":463,"is_range":73,"range_type":396,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"6.8:rc4"]