VDB
BDU%3A2023-02533
BDU%3A2023-02533
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Уязвимость функции inode_init_owner() в модуле fs/inode.c файловой системы XFS ядра операционной системы Linux, позволяющая нарушителю повысить свои привилегии и получить доступ к защищаемой информации, а так же вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
6.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| ООО «РусБИТех-Астра», АО «ИВК», Сообщество свободного программного обеспечения | Astra Linux Special Edition (запись в едином реестре российских программ №369), Альт 8 СП (запись в едином реестре российских программ №4305), Linux |
Timeline
- May 15, 2023 CVE Published
- Sep 30, 2024 CVE Updated
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
References
- https://access.redhat.com/security/cve/CVE-2021-4037 url
- https://www.debian.org/security/2022/dsa-5257 url
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=0fa3ecd87848 url
- https://lists.debian.org/debian-lts-announce/2022/11/msg00001.html url
- https://bugzilla.redhat.com/show_bug.cgi?id=2027239 url
- https://bugzilla.redhat.com/show_bug.cgi?id=2004810 url
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=01ea173e103e url
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-4037 url
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=01ea173e103edd5ec41acec65b9261b87e123fc2 url
- https://ubuntu.com/security/notices/USN-5650-1 url
- https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.4.241 url
- https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.10.146 url
- https://altsp.su/obnovleniya-bezopasnosti/ url
- https://wiki.astralinux.ru/astra-linux-se16-bulletin-20220829SE16 url
- https://wiki.astralinux.ru/astra-linux-se17-bulletin-2022-0819SE17 advisory