VDB
CVE-2023-52441
CVE-2023-52441
PUBLISHED
Es existieren mehrere Schwachstellen im Linux Kernel. Diese bestehen in der Komponente "ksmbd". sind auf einen Slub-Overflow, einen Out-of-Bounds-Fehler sowie einen Fehler bei der Validierung der Session ID zurückzuführen. Ein lokaler Angreifer kann diese Schwachstellen ausnutzen, um nicht näher spezifizierte Auswirkungen zu verursachen.
EPSS 0.02% · 6.8th percentile
Risk Scores
EPSS Score
0.02%
6.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu | Ubuntu Linux |
Exploit Intelligence
- CIRCL seen: CVE-2023-52441 (circl-sighting)
- CIRCL seen: CVE-2023-52441 (circl-sighting)
- CIRCL seen: CVE-2023-52441 (circl-sighting)
- CIRCL seen: CVE-2023-52441 (circl-sighting)
- https://git.kernel.org/stable/c/5c0df9d30c289d6b9d7d44e2a450de2f8e3cf40b (circl)
- https://git.kernel.org/stable/c/330d900620dfc9893011d725b3620cd2ee0bc2bc (circl)
- https://git.kernel.org/stable/c/aa669ef229ae8dd779da9caa24e254964545895f (circl)
- https://git.kernel.org/stable/c/536bb492d39bb6c080c92f31e8a55fe9934f452b (circl)
Timeline
- Jan 21, 1970 Security Advisory
- Feb 20, 2024 CVE Published
- Feb 21, 2024 EPSS Score
- Feb 21, 2024 PoC Published
- Feb 21, 2024 PoC Published
- Feb 22, 2024 PoC Published
- Mar 19, 2024 EPSS Score
- Apr 15, 2024 EPSS Score
- Apr 16, 2024 CVE Updated
- May 11, 2024 EPSS Score
- Jun 7, 2024 EPSS Score
- Jul 4, 2024 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2024/wid-sec-w-2024-0431.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2024-0431 advisory
- http://lore.kernel.org/linux-cve-announce/2024022123-glance-wrinkle-26c1@gregkh/ advisory
- http://lore.kernel.org/linux-cve-announce/2024022129-gently-activity-ca7d@gregkh/ advisory
- http://lore.kernel.org/linux-cve-announce/2024022132-unvented-arguably-5ea9@gregkh/ advisory
- https://ubuntu.com/security/notices/USN-6725-1 advisory
- https://ubuntu.com/security/notices/USN-6725-2 advisory