Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-23039

Опубликовано: 22 фев. 2023
Источник: nvd
CVSS3: 5.7
EPSS Низкий

Описание

An issue was discovered in the Linux kernel through 6.2.0-rc2. drivers/tty/vcc.c has a race condition and resultant use-after-free if a physically proximate attacker removes a VCC device while calling open(), aka a race condition between vcc_open() and vcc_remove().

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия до 6.2.0 (исключая)
cpe:2.3:o:linux:linux_kernel:6.2.0:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:6.2.0:rc2:*:*:*:*:*:*

EPSS

Процентиль: 4%
0.00019
Низкий

5.7 Medium

CVSS3

Дефекты

CWE-362
CWE-362

Связанные уязвимости

CVSS3: 5.7
ubuntu
почти 3 года назад

An issue was discovered in the Linux kernel through 6.2.0-rc2. drivers/tty/vcc.c has a race condition and resultant use-after-free if a physically proximate attacker removes a VCC device while calling open(), aka a race condition between vcc_open() and vcc_remove().

CVSS3: 6.4
redhat
почти 3 года назад

An issue was discovered in the Linux kernel through 6.2.0-rc2. drivers/tty/vcc.c has a race condition and resultant use-after-free if a physically proximate attacker removes a VCC device while calling open(), aka a race condition between vcc_open() and vcc_remove().

CVSS3: 5.7
msrc
почти 3 года назад

An issue was discovered in the Linux kernel through 6.2.0-rc2. drivers/tty/vcc.c has a race condition and resultant use-after-free if a physically proximate attacker removes a VCC device while calling open() aka a race condition between vcc_open() and vcc_remove().

CVSS3: 5.7
debian
почти 3 года назад

An issue was discovered in the Linux kernel through 6.2.0-rc2. drivers ...

CVSS3: 5.7
github
почти 3 года назад

An issue was discovered in the Linux kernel through 6.2.0-rc2. drivers/tty/vcc.c has a race condition and resultant use-after-free if a physically proximate attacker removes a VCC device while calling open(), aka a race condition between vcc_open() and vcc_remove().

EPSS

Процентиль: 4%
0.00019
Низкий

5.7 Medium

CVSS3

Дефекты

CWE-362
CWE-362