VDB
BDU%3A2023-06336
BDU%3A2023-06336
PUBLISHED
CVSS 9 CRITICAL
Уязвимость драйвера системы хранения данных Ceph (net/ceph/messenger_v2.c) ядра операционных систем Linux, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
9
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| ООО «РусБИТех-Астра», Сообщество свободного программного обеспечения | Astra Linux Special Edition (запись в едином реестре российских программ №369), Debian GNU/Linux, Linux |
Timeline
- Oct 5, 2023 CVE Published
- Nov 11, 2024 CVE Updated
References
- https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=a282a2f10539dce2aa619e71e1817570d557fc97 url
- https://github.com/google/security-research/security/advisories/GHSA-jg27-jx6w-xwph url
- https://github.com/torvalds/linux/commit/a282a2f10539dce2aa619e71e1817570d557fc97 url
- https://www.spinics.net/lists/ceph-devel/msg57909.html url
- https://security-tracker.debian.org/tracker/CVE-2023-44466 url
- https://kernel.org/pub/linux/kernel/v5.x/ChangeLog-5.15.121 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.40 url
- https://kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.4.5 url
- https://wiki.astralinux.ru/astra-linux-se16-bulletin-20231214SE16 url
- https://wiki.astralinux.ru/astra-linux-se47-bulletin-2024-1031SE47 url
- https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=a282a2f10539dce2aa619e71e1817570d557fc97 advisory
- https://wiki.astralinux.ru/astra-linux-se17-bulletin-2024-0212SE17 advisory