Логотип exploitDog
bind:"CVE-2023-1192" OR bind:"CVE-2023-5345" OR bind:"CVE-2023-45871"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2023-1192" OR bind:"CVE-2023-5345" OR bind:"CVE-2023-45871"

Количество 70

Количество 70

oracle-oval логотип

ELSA-2023-13047

больше 1 года назад

ELSA-2023-13047: kernel security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2023-7749

больше 1 года назад

ELSA-2023-7749: kernel security update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2023-1192

почти 2 года назад

A use-after-free flaw was found in smb2_is_status_io_timeout() in CIFS in the Linux Kernel. After CIFS transfers response data to a system call, there are still local variable points to the memory region, and if the system call frees it faster than CIFS uses it, CIFS will access a free memory region, leading to a denial of service.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2023-1192

почти 3 года назад

A use-after-free flaw was found in smb2_is_status_io_timeout() in CIFS in the Linux Kernel. After CIFS transfers response data to a system call, there are still local variable points to the memory region, and if the system call frees it faster than CIFS uses it, CIFS will access a free memory region, leading to a denial of service.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2023-1192

почти 2 года назад

A use-after-free flaw was found in smb2_is_status_io_timeout() in CIFS in the Linux Kernel. After CIFS transfers response data to a system call, there are still local variable points to the memory region, and if the system call frees it faster than CIFS uses it, CIFS will access a free memory region, leading to a denial of service.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2023-1192

больше 1 года назад

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2023-1192

почти 2 года назад

A use-after-free flaw was found in smb2_is_status_io_timeout() in CIFS ...

CVSS3: 6.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4071-1

больше 1 года назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4093-1

почти 2 года назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4072-2

больше 1 года назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4072-1

почти 2 года назад

Security update for the Linux Kernel

EPSS: Низкий
github логотип

GHSA-r277-j8m2-3x97

почти 2 года назад

A use-after-free flaw was found in smb2_is_status_io_timeout() in CIFS in the Linux Kernel. After CIFS transfers response data to a system call, there are still local variable points to the memory region, and if the system call frees it faster than CIFS uses it, CIFS will access a free memory region, leading to a denial of service.

CVSS3: 6.5
EPSS: Низкий
fstec логотип

BDU:2023-01276

больше 2 лет назад

Уязвимость функции smb2_is_status_io_timeout() компоненты SMB ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4058-1

почти 2 года назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4057-1

почти 2 года назад

Security update for the Linux Kernel

EPSS: Низкий
redos логотип

ROS-20240812-16

12 месяцев назад

Множественные уязвимости kernel-lt

CVSS3: 9.8
EPSS: Низкий
ubuntu логотип

CVE-2023-5345

почти 2 года назад

A use-after-free vulnerability in the Linux kernel's fs/smb/client component can be exploited to achieve local privilege escalation. In case of an error in smb3_fs_context_parse_param, ctx->password was freed but the field was not set to NULL which could lead to double free. We recommend upgrading past commit e6e43b8aa7cd3c3af686caf0c2e11819a886d705.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2023-5345

почти 2 года назад

A use-after-free vulnerability in the Linux kernel's fs/smb/client component can be exploited to achieve local privilege escalation. In case of an error in smb3_fs_context_parse_param, ctx->password was freed but the field was not set to NULL which could lead to double free. We recommend upgrading past commit e6e43b8aa7cd3c3af686caf0c2e11819a886d705.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2023-5345

почти 2 года назад

A use-after-free vulnerability in the Linux kernel's fs/smb/client component can be exploited to achieve local privilege escalation. In case of an error in smb3_fs_context_parse_param, ctx->password was freed but the field was not set to NULL which could lead to double free. We recommend upgrading past commit e6e43b8aa7cd3c3af686caf0c2e11819a886d705.

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2023-5345

почти 2 года назад

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2023-13047

ELSA-2023-13047: kernel security update (IMPORTANT)

больше 1 года назад
oracle-oval логотип
ELSA-2023-7749

ELSA-2023-7749: kernel security update (IMPORTANT)

больше 1 года назад
ubuntu логотип
CVE-2023-1192

A use-after-free flaw was found in smb2_is_status_io_timeout() in CIFS in the Linux Kernel. After CIFS transfers response data to a system call, there are still local variable points to the memory region, and if the system call frees it faster than CIFS uses it, CIFS will access a free memory region, leading to a denial of service.

CVSS3: 6.5
0%
Низкий
почти 2 года назад
redhat логотип
CVE-2023-1192

A use-after-free flaw was found in smb2_is_status_io_timeout() in CIFS in the Linux Kernel. After CIFS transfers response data to a system call, there are still local variable points to the memory region, and if the system call frees it faster than CIFS uses it, CIFS will access a free memory region, leading to a denial of service.

CVSS3: 6.5
0%
Низкий
почти 3 года назад
nvd логотип
CVE-2023-1192

A use-after-free flaw was found in smb2_is_status_io_timeout() in CIFS in the Linux Kernel. After CIFS transfers response data to a system call, there are still local variable points to the memory region, and if the system call frees it faster than CIFS uses it, CIFS will access a free memory region, leading to a denial of service.

CVSS3: 6.5
0%
Низкий
почти 2 года назад
msrc логотип
CVSS3: 6.5
0%
Низкий
больше 1 года назад
debian логотип
CVE-2023-1192

A use-after-free flaw was found in smb2_is_status_io_timeout() in CIFS ...

CVSS3: 6.5
0%
Низкий
почти 2 года назад
suse-cvrf логотип
SUSE-SU-2023:4071-1

Security update for the Linux Kernel

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2023:4093-1

Security update for the Linux Kernel

почти 2 года назад
suse-cvrf логотип
SUSE-SU-2023:4072-2

Security update for the Linux Kernel

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2023:4072-1

Security update for the Linux Kernel

почти 2 года назад
github логотип
GHSA-r277-j8m2-3x97

A use-after-free flaw was found in smb2_is_status_io_timeout() in CIFS in the Linux Kernel. After CIFS transfers response data to a system call, there are still local variable points to the memory region, and if the system call frees it faster than CIFS uses it, CIFS will access a free memory region, leading to a denial of service.

CVSS3: 6.5
0%
Низкий
почти 2 года назад
fstec логотип
BDU:2023-01276

Уязвимость функции smb2_is_status_io_timeout() компоненты SMB ядра операционной системы Linux, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
0%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:4058-1

Security update for the Linux Kernel

почти 2 года назад
suse-cvrf логотип
SUSE-SU-2023:4057-1

Security update for the Linux Kernel

почти 2 года назад
redos логотип
ROS-20240812-16

Множественные уязвимости kernel-lt

CVSS3: 9.8
12 месяцев назад
ubuntu логотип
CVE-2023-5345

A use-after-free vulnerability in the Linux kernel's fs/smb/client component can be exploited to achieve local privilege escalation. In case of an error in smb3_fs_context_parse_param, ctx->password was freed but the field was not set to NULL which could lead to double free. We recommend upgrading past commit e6e43b8aa7cd3c3af686caf0c2e11819a886d705.

CVSS3: 7.8
0%
Низкий
почти 2 года назад
redhat логотип
CVE-2023-5345

A use-after-free vulnerability in the Linux kernel's fs/smb/client component can be exploited to achieve local privilege escalation. In case of an error in smb3_fs_context_parse_param, ctx->password was freed but the field was not set to NULL which could lead to double free. We recommend upgrading past commit e6e43b8aa7cd3c3af686caf0c2e11819a886d705.

CVSS3: 7.8
0%
Низкий
почти 2 года назад
nvd логотип
CVE-2023-5345

A use-after-free vulnerability in the Linux kernel's fs/smb/client component can be exploited to achieve local privilege escalation. In case of an error in smb3_fs_context_parse_param, ctx->password was freed but the field was not set to NULL which could lead to double free. We recommend upgrading past commit e6e43b8aa7cd3c3af686caf0c2e11819a886d705.

CVSS3: 7.8
0%
Низкий
почти 2 года назад
msrc логотип
CVSS3: 7.8
0%
Низкий
почти 2 года назад

Уязвимостей на страницу