CVE-2023-53540
Aliases:UBUNTU-CVE-2023-53540DEBIAN-CVE-2023-53540
Advisory lineage Upstream: 0 Downstream: 13
Modified
Published: 04 Oct 2025, 15:16
Last modified:05 Aug 2026, 09:14
Vulnerability Summary
Overall Risk (default)
medium
28/100 CVSS Score
7.1 HIGH
v3.1 (cve.org)
EPSS Score
0.19% LOW
0% probability +0.17%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected
Timeline
04 Oct 2025, 15:16
Published
Vulnerability first disclosed
05 Aug 2026, 09:14
Last Modified
Vulnerability information updated
Description
In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: reject auth/assoc to AP with our address If the AP uses our own address as its MLD address or BSSID, then clearly something's wrong. Reject such connections so we don't try and fail later.
CVSS Metrics
- v3.1•MEDIUM•Score: 5.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- v3.1•HIGH•Score: 7.1CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H
EPSS Trends
Current EPSS score: 0.19%• Percentile: 9%
Affected Systems
- debian•linux
all | < 6.1.55-1 | < 6.5.6-1 | < 6.5.6-1
- ubuntu•linux
all | all
- ubuntu•linux-allwinner-5.19
all
- ubuntu•linux-aws
all | all
- ubuntu•linux-aws-5.0
all
- ubuntu•linux-aws-5.11
all
- ubuntu•linux-aws-5.13
all
- ubuntu•linux-aws-5.15
all
- ubuntu•linux-aws-5.19
all
- ubuntu•linux-aws-5.3
all
- ubuntu•linux-aws-5.4
all
- ubuntu•linux-aws-5.8
all
- ubuntu•linux-aws-6.2
all
- ubuntu•linux-aws-6.5
all
- ubuntu•linux-aws-fips
all
- ubuntu•linux-aws-hwe
all
- ubuntu•linux-azure
all | all | all
- ubuntu•linux-azure-4.15
all
- ubuntu•linux-azure-5.11
all
- ubuntu•linux-azure-5.13
all
- ubuntu•linux-azure-5.15
all
- ubuntu•linux-azure-5.19
all
- ubuntu•linux-azure-5.3
all
- ubuntu•linux-azure-5.4
all
- ubuntu•linux-azure-5.8
all
- ubuntu•linux-azure-6.11
all
- ubuntu•linux-azure-6.2
all
- ubuntu•linux-azure-6.5
all
- ubuntu•linux-azure-edge
all
- ubuntu•linux-azure-fde
all | all | all
- ubuntu•linux-azure-fde-5.15
all
- ubuntu•linux-azure-fde-5.19
all
- ubuntu•linux-azure-fde-6.2
all
- ubuntu•linux-azure-fde-6.8
all
- ubuntu•linux-azure-fips
all
- ubuntu•linux-bluefield
all | all
- ubuntu•linux-fips
all
- ubuntu•linux-gcp
all | all | all
- ubuntu•linux-gcp-4.15
all
- ubuntu•linux-gcp-5.11
all
- ubuntu•linux-gcp-5.13
all
- ubuntu•linux-gcp-5.15
all
- ubuntu•linux-gcp-5.19
all
- ubuntu•linux-gcp-5.3
all
- ubuntu•linux-gcp-5.4
all
- ubuntu•linux-gcp-5.8
all
- ubuntu•linux-gcp-6.11
all
- ubuntu•linux-gcp-6.2
all
- ubuntu•linux-gcp-6.5
all
- ubuntu•linux-gcp-fips
all
Showing first 50 affected entries in server-rendered view.
References (7)
- https://git.kernel.org/stable/c/676a423410131d111a264d29aecbe6aadd57fb22
- https://git.kernel.org/stable/c/07added2c6cd63de047bc786b39436322abb67c0
- https://git.kernel.org/stable/c/5d4e04bf3a0f098bd9033de3a5291810fa14c7a6
- https://ubuntu.com/security/CVE-2023-53540
- https://www.cve.org/CVERecord?id=CVE-2023-53540
- https://git.kernel.org/linus/5d4e04bf3a0f098bd9033de3a5291810fa14c7a6
- https://security-tracker.debian.org/tracker/CVE-2023-53540