Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-42752

Опубликовано: 13 окт. 2023
Источник: nvd
CVSS3: 5.5
EPSS Низкий

Описание

An integer overflow flaw was found in the Linux kernel. This issue leads to the kernel allocating skb_shared_info in the userspace, which is exploitable in systems without SMAP protection since skb_shared_info contains references to function pointers.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия до 6.5.7 (включая)

EPSS

Процентиль: 1%
0.00013
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-190
CWE-190

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 1 года назад

An integer overflow flaw was found in the Linux kernel. This issue leads to the kernel allocating `skb_shared_info` in the userspace, which is exploitable in systems without SMAP protection since `skb_shared_info` contains references to function pointers.

CVSS3: 5.5
redhat
почти 2 года назад

An integer overflow flaw was found in the Linux kernel. This issue leads to the kernel allocating `skb_shared_info` in the userspace, which is exploitable in systems without SMAP protection since `skb_shared_info` contains references to function pointers.

CVSS3: 5.5
debian
больше 1 года назад

An integer overflow flaw was found in the Linux kernel. This issue lea ...

CVSS3: 5.5
github
больше 1 года назад

An integer overflow flaw was found in the Linux kernel. This issue leads to the kernel allocating `skb_shared_info` in the userspace, which is exploitable in systems without SMAP protection since `skb_shared_info` contains references to function pointers.

CVSS3: 5.5
fstec
почти 2 года назад

Уязвимость функции kmalloc_reserve() в модуле net/core/skbuff.c сетевой подсистемы ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 1%
0.00013
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-190
CWE-190