Количество 58
Количество 58

BDU:2023-05388
Уязвимость функции hfsc_change_class() в модуле net/sched/sch_hfsc.c ядра операционной системы Linux, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации или повысить свои привилегии

ROS-20241008-10
Множественные уязвимости kernel-lt

CVE-2023-4623
A use-after-free vulnerability in the Linux kernel's net/sched: sch_hfsc (HFSC qdisc traffic control) component can be exploited to achieve local privilege escalation. If a class with a link-sharing curve (i.e. with the HFSC_FSC flag set) has a parent without a link-sharing curve, then init_vf() will call vttree_insert() on the parent, but vttree_remove() will be skipped in update_vf(). This leaves a dangling pointer that can cause a use-after-free. We recommend upgrading past commit b3d26c5702c7d6c45456326e56d2ccf3f103e60f.

CVE-2023-4623
A use-after-free vulnerability in the Linux kernel's net/sched: sch_hfsc (HFSC qdisc traffic control) component can be exploited to achieve local privilege escalation. If a class with a link-sharing curve (i.e. with the HFSC_FSC flag set) has a parent without a link-sharing curve, then init_vf() will call vttree_insert() on the parent, but vttree_remove() will be skipped in update_vf(). This leaves a dangling pointer that can cause a use-after-free. We recommend upgrading past commit b3d26c5702c7d6c45456326e56d2ccf3f103e60f.

CVE-2023-4623
A use-after-free vulnerability in the Linux kernel's net/sched: sch_hfsc (HFSC qdisc traffic control) component can be exploited to achieve local privilege escalation. If a class with a link-sharing curve (i.e. with the HFSC_FSC flag set) has a parent without a link-sharing curve, then init_vf() will call vttree_insert() on the parent, but vttree_remove() will be skipped in update_vf(). This leaves a dangling pointer that can cause a use-after-free. We recommend upgrading past commit b3d26c5702c7d6c45456326e56d2ccf3f103e60f.
CVE-2023-4623
A use-after-free vulnerability in the Linux kernel's net/sched: sch_hf ...

SUSE-SU-2023:4328-1
Security update for the Linux Kernel (Live Patch 5 for SLE 15 SP5)

SUSE-SU-2023:4321-1
Security update for the Linux Kernel (Live Patch 42 for SLE 15 SP1)

SUSE-SU-2023:4313-1
Security update for the Linux Kernel (Live Patch 45 for SLE 12 SP5)

SUSE-SU-2023:4300-1
Security update for the Linux Kernel (Live Patch 36 for SLE 15 SP1)

SUSE-SU-2023:4278-1
Security update for the Linux Kernel (Live Patch 41 for SLE 15 SP1)

SUSE-SU-2023:4244-1
Security update for the Linux Kernel (Live Patch 39 for SLE 15 SP2)

SUSE-SU-2023:4208-1
Security update for the Linux Kernel (Live Patch 44 for SLE 12 SP5)

SUSE-SU-2023:4204-1
Security update for the Linux Kernel (Live Patch 36 for SLE 12 SP5)

SUSE-SU-2023:4164-1
Security update for the Linux Kernel RT (Live Patch 5 for SLE 15 SP5)
GHSA-j8c5-g64v-xj97
A use-after-free vulnerability in the Linux kernel's net/sched: sch_hfsc (HFSC qdisc traffic control) component can be exploited to achieve local privilege escalation. If a class with a link-sharing curve (i.e. with the HFSC_FSC flag set) has a parent without a link-sharing curve, then init_vf() will call vttree_insert() on the parent, but vttree_remove() will be skipped in update_vf(). This leaves a dangling pointer that can cause a use-after-free. We recommend upgrading past commit b3d26c5702c7d6c45456326e56d2ccf3f103e60f.
ELSA-2023-13039
ELSA-2023-13039: Unbreakable Enterprise kernel security update (IMPORTANT)

SUSE-SU-2023:4325-1
Security update for the Linux Kernel (Live Patch 3 for SLE 15 SP5)

SUSE-SU-2023:4301-1
Security update for the Linux Kernel (Live Patch 16 for SLE 15 SP4)

SUSE-SU-2023:4279-1
Security update for the Linux Kernel (Live Patch 34 for SLE 15 SP2)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | BDU:2023-05388 Уязвимость функции hfsc_change_class() в модуле net/sched/sch_hfsc.c ядра операционной системы Linux, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации или повысить свои привилегии | CVSS3: 7.8 | 0% Низкий | почти 2 года назад |
![]() | ROS-20241008-10 Множественные уязвимости kernel-lt | CVSS3: 7.8 | 9 месяцев назад | |
![]() | CVE-2023-4623 A use-after-free vulnerability in the Linux kernel's net/sched: sch_hfsc (HFSC qdisc traffic control) component can be exploited to achieve local privilege escalation. If a class with a link-sharing curve (i.e. with the HFSC_FSC flag set) has a parent without a link-sharing curve, then init_vf() will call vttree_insert() on the parent, but vttree_remove() will be skipped in update_vf(). This leaves a dangling pointer that can cause a use-after-free. We recommend upgrading past commit b3d26c5702c7d6c45456326e56d2ccf3f103e60f. | CVSS3: 7.8 | 0% Низкий | почти 2 года назад |
![]() | CVE-2023-4623 A use-after-free vulnerability in the Linux kernel's net/sched: sch_hfsc (HFSC qdisc traffic control) component can be exploited to achieve local privilege escalation. If a class with a link-sharing curve (i.e. with the HFSC_FSC flag set) has a parent without a link-sharing curve, then init_vf() will call vttree_insert() on the parent, but vttree_remove() will be skipped in update_vf(). This leaves a dangling pointer that can cause a use-after-free. We recommend upgrading past commit b3d26c5702c7d6c45456326e56d2ccf3f103e60f. | CVSS3: 7.8 | 0% Низкий | почти 2 года назад |
![]() | CVE-2023-4623 A use-after-free vulnerability in the Linux kernel's net/sched: sch_hfsc (HFSC qdisc traffic control) component can be exploited to achieve local privilege escalation. If a class with a link-sharing curve (i.e. with the HFSC_FSC flag set) has a parent without a link-sharing curve, then init_vf() will call vttree_insert() on the parent, but vttree_remove() will be skipped in update_vf(). This leaves a dangling pointer that can cause a use-after-free. We recommend upgrading past commit b3d26c5702c7d6c45456326e56d2ccf3f103e60f. | CVSS3: 7.8 | 0% Низкий | почти 2 года назад |
CVE-2023-4623 A use-after-free vulnerability in the Linux kernel's net/sched: sch_hf ... | CVSS3: 7.8 | 0% Низкий | почти 2 года назад | |
![]() | SUSE-SU-2023:4328-1 Security update for the Linux Kernel (Live Patch 5 for SLE 15 SP5) | 0% Низкий | больше 1 года назад | |
![]() | SUSE-SU-2023:4321-1 Security update for the Linux Kernel (Live Patch 42 for SLE 15 SP1) | 0% Низкий | больше 1 года назад | |
![]() | SUSE-SU-2023:4313-1 Security update for the Linux Kernel (Live Patch 45 for SLE 12 SP5) | 0% Низкий | больше 1 года назад | |
![]() | SUSE-SU-2023:4300-1 Security update for the Linux Kernel (Live Patch 36 for SLE 15 SP1) | 0% Низкий | больше 1 года назад | |
![]() | SUSE-SU-2023:4278-1 Security update for the Linux Kernel (Live Patch 41 for SLE 15 SP1) | 0% Низкий | больше 1 года назад | |
![]() | SUSE-SU-2023:4244-1 Security update for the Linux Kernel (Live Patch 39 for SLE 15 SP2) | 0% Низкий | больше 1 года назад | |
![]() | SUSE-SU-2023:4208-1 Security update for the Linux Kernel (Live Patch 44 for SLE 12 SP5) | 0% Низкий | больше 1 года назад | |
![]() | SUSE-SU-2023:4204-1 Security update for the Linux Kernel (Live Patch 36 for SLE 12 SP5) | 0% Низкий | больше 1 года назад | |
![]() | SUSE-SU-2023:4164-1 Security update for the Linux Kernel RT (Live Patch 5 for SLE 15 SP5) | 0% Низкий | больше 1 года назад | |
GHSA-j8c5-g64v-xj97 A use-after-free vulnerability in the Linux kernel's net/sched: sch_hfsc (HFSC qdisc traffic control) component can be exploited to achieve local privilege escalation. If a class with a link-sharing curve (i.e. with the HFSC_FSC flag set) has a parent without a link-sharing curve, then init_vf() will call vttree_insert() on the parent, but vttree_remove() will be skipped in update_vf(). This leaves a dangling pointer that can cause a use-after-free. We recommend upgrading past commit b3d26c5702c7d6c45456326e56d2ccf3f103e60f. | CVSS3: 7.8 | 0% Низкий | почти 2 года назад | |
ELSA-2023-13039 ELSA-2023-13039: Unbreakable Enterprise kernel security update (IMPORTANT) | больше 1 года назад | |||
![]() | SUSE-SU-2023:4325-1 Security update for the Linux Kernel (Live Patch 3 for SLE 15 SP5) | больше 1 года назад | ||
![]() | SUSE-SU-2023:4301-1 Security update for the Linux Kernel (Live Patch 16 for SLE 15 SP4) | больше 1 года назад | ||
![]() | SUSE-SU-2023:4279-1 Security update for the Linux Kernel (Live Patch 34 for SLE 15 SP2) | больше 1 года назад |
Уязвимостей на страницу