Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-0386

Опубликовано: 24 янв. 2023
Источник: redhat
CVSS3: 7
EPSS Средний

Описание

A flaw was found in the Linux kernel, where unauthorized access to the execution of the setuid file with capabilities was found in the Linux kernel’s OverlayFS subsystem in how a user copies a capable file from a nosuid mount into another mount. This uid mapping bug allows a local user to escalate their privileges on the system.

Отчет

This vulnerability was first introduced into Red Hat Enterprise Linux starting in version 8.6. Earlier releases are not affected, including Red Hat Enterprise Linux 8.4.

Меры по смягчению последствий

To mitigate this issue, prevent the module overlay from being loaded. Please see https://access.redhat.com/solutions/41278 for information on how to blacklist a kernel module to prevent it from loading automatically.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6kernelNot affected
Red Hat Enterprise Linux 7kernelNot affected
Red Hat Enterprise Linux 7kernel-rtNot affected
Red Hat Enterprise Linux 8kernel-rtFixedRHSA-2023:158404.04.2023
Red Hat Enterprise Linux 8kernelFixedRHSA-2023:156604.04.2023
Red Hat Enterprise Linux 8kpatch-patchFixedRHSA-2023:165905.04.2023
Red Hat Enterprise Linux 8.6 Extended Update SupportkernelFixedRHSA-2023:155404.04.2023
Red Hat Enterprise Linux 8.6 Extended Update Supportkpatch-patchFixedRHSA-2023:166005.04.2023
Red Hat Enterprise Linux 9kernelFixedRHSA-2023:170311.04.2023
Red Hat Enterprise Linux 9kernel-rtFixedRHSA-2023:169111.04.2023

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-282
https://bugzilla.redhat.com/show_bug.cgi?id=2159505kernel: FUSE filesystem low-privileged user privileges escalation

EPSS

Процентиль: 98%
0.53768
Средний

7 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 2 лет назад

A flaw was found in the Linux kernel, where unauthorized access to the execution of the setuid file with capabilities was found in the Linux kernel’s OverlayFS subsystem in how a user copies a capable file from a nosuid mount into another mount. This uid mapping bug allows a local user to escalate their privileges on the system.

CVSS3: 7.8
nvd
около 2 лет назад

A flaw was found in the Linux kernel, where unauthorized access to the execution of the setuid file with capabilities was found in the Linux kernel’s OverlayFS subsystem in how a user copies a capable file from a nosuid mount into another mount. This uid mapping bug allows a local user to escalate their privileges on the system.

CVSS3: 7.8
msrc
около 2 лет назад

Описание отсутствует

CVSS3: 7.8
debian
около 2 лет назад

A flaw was found in the Linux kernel, where unauthorized access to the ...

CVSS3: 7.8
github
почти 2 года назад

A flaw was found in the Linux kernel, where unauthorized access to the execution of the setuid file with capabilities was found in the Linux kernel’s OverlayFS subsystem in how a user copies a capable file from a nosuid mount into another mount. This uid mapping bug allows a local user to escalate their privileges on the system.

EPSS

Процентиль: 98%
0.53768
Средний

7 High

CVSS3