Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-53769

Опубликовано: 08 дек. 2025
Источник: redhat
CVSS3: 6

Описание

In the Linux kernel, the following vulnerability has been resolved: virt/coco/sev-guest: Double-buffer messages The encryption algorithms read and write directly to shared unencrypted memory, which may leak information as well as permit the host to tamper with the message integrity. Instead, copy whole messages in or out as needed before doing any computation on them.

Отчет

This vulnerability is rated as Moderate by Red Hat. The vulnerability primarily impacts confidentiality and integrity, because plaintext or intermediate values can be observed via shared unencrypted memory and as such there can be host-controlled modifications of the message buffer that can influence what is encrypted or verified and decrypted. Impact on availability is limited to tampering causing request failures or EBADMSG errors. However, triggering this vulnerability most likely requires elevated privileges that correspond to hypervisor or host-level control (typically higher than what a guest local user will possess).

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10kernelNot affected
Red Hat Enterprise Linux 6kernelNot affected
Red Hat Enterprise Linux 7kernelNot affected
Red Hat Enterprise Linux 7kernel-rtNot affected
Red Hat Enterprise Linux 8kernel-rtFix deferred
Red Hat Enterprise Linux 9kernel-rtFix deferred
Red Hat Enterprise Linux 8kernelFixedRHSA-2023:707714.11.2023
Red Hat Enterprise Linux 9kernelFixedRHSA-2023:506912.09.2023
Red Hat Enterprise Linux 9kernelFixedRHSA-2023:506912.09.2023

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-319
https://bugzilla.redhat.com/show_bug.cgi?id=2419909kernel: virt/coco/sev-guest: Double-buffer messages

6 Medium

CVSS3

Связанные уязвимости

CVSS3: 9.3
ubuntu
9 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: virt/coco/sev-guest: Double-buffer messages The encryption algorithms read and write directly to shared unencrypted memory, which may leak information as well as permit the host to tamper with the message integrity. Instead, copy whole messages in or out as needed before doing any computation on them.

CVSS3: 9.3
nvd
9 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: virt/coco/sev-guest: Double-buffer messages The encryption algorithms read and write directly to shared unencrypted memory, which may leak information as well as permit the host to tamper with the message integrity. Instead, copy whole messages in or out as needed before doing any computation on them.

CVSS3: 9.3
debian
9 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: v ...

CVSS3: 7.8
redos
2 месяца назад

Уязвимость kernel-lt

CVSS3: 9.3
github
9 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: virt/coco/sev-guest: Double-buffer messages The encryption algorithms read and write directly to shared unencrypted memory, which may leak information as well as permit the host to tamper with the message integrity. Instead, copy whole messages in or out as needed before doing any computation on them.

6 Medium

CVSS3