Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2j2w-8gvj-wjmj

Опубликовано: 11 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

A vulnerability exists in the memory management subsystem of the Linux kernel. The lock handling for accessing and updating virtual memory areas (VMAs) is incorrect, leading to use-after-free problems. This issue can be successfully exploited to execute arbitrary kernel code, escalate containers, and gain root privileges.

A vulnerability exists in the memory management subsystem of the Linux kernel. The lock handling for accessing and updating virtual memory areas (VMAs) is incorrect, leading to use-after-free problems. This issue can be successfully exploited to execute arbitrary kernel code, escalate containers, and gain root privileges.

EPSS

Процентиль: 45%
0.0022
Низкий

7.8 High

CVSS3

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 2 лет назад

A vulnerability exists in the memory management subsystem of the Linux kernel. The lock handling for accessing and updating virtual memory areas (VMAs) is incorrect, leading to use-after-free problems. This issue can be successfully exploited to execute arbitrary kernel code, escalate containers, and gain root privileges.

CVSS3: 7.8
redhat
больше 2 лет назад

A vulnerability exists in the memory management subsystem of the Linux kernel. The lock handling for accessing and updating virtual memory areas (VMAs) is incorrect, leading to use-after-free problems. This issue can be successfully exploited to execute arbitrary kernel code, escalate containers, and gain root privileges.

CVSS3: 7.8
nvd
больше 2 лет назад

A vulnerability exists in the memory management subsystem of the Linux kernel. The lock handling for accessing and updating virtual memory areas (VMAs) is incorrect, leading to use-after-free problems. This issue can be successfully exploited to execute arbitrary kernel code, escalate containers, and gain root privileges.

CVSS3: 7.8
msrc
больше 2 лет назад

Distros-[dirtyvma] privilege escalation via non-rcu-protected vma traversal

CVSS3: 7.8
debian
больше 2 лет назад

A vulnerability exists in the memory management subsystem of the Linux ...

EPSS

Процентиль: 45%
0.0022
Низкий

7.8 High

CVSS3

Дефекты

CWE-416