VDB
BDU%3A2023-02522
BDU%3A2023-02522
PUBLISHED
CVSS 4.599999904632568 MEDIUM
Уязвимость функции io_cqring_event_overflow() в модуле uring/msg_ring.c ядра операционной системы Linux, позволяющая нарушителю повысить привилегии или вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
4.599999904632568
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Сообщество свободного программного обеспечения, АО «ИВК» | Linux, АЛЬТ СП 10 |
Timeline
- May 15, 2023 CVE Published
- Oct 20, 2023 CVE Updated
References
- https://bugzilla.redhat.com/show_bug.cgi?id=2192175 url
- https://groups.google.com/g/syzkaller/c/T04q4HMUCdA/m/qVaOqv2RAAAJ url
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-2430 url
- https://lore.kernel.org/io-uring/Y8krlYa52%2F0YGqkg@ip-172-31-85-199.ec2.internal/ url
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=e12d7a46f65ae4b7d58a5e0c1cbfa825cf8 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.50 url
- https://altsp.su/obnovleniya-bezopasnosti/ url