Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Jordy Zimmer

#48193de 53,635
5.3CVSS total
Vulnerabilidades · 1
PT-2023-2675
5.3
2023-01-21
Linux · Linux Kernel · CVE-2023-0458
**Name of the Vulnerable Software and Affected Versions** Linux Kernel versions prior to 6.1.8 **Description** A speculative pointer dereference problem exists in the Linux Kernel on the `do prlimit()` function. The resource argument value is controlled and is used in pointer arithmetic for the `rlim` variable and can be used to leak the contents. **Recommendations** Upgrade past version 6.1.8 or apply commit 739790605705ddcf18f21782b9c99ad7d53a8c11 to resolve the issue. As a temporary workaround, consider restricting access to the `do prlimit()` function until a patch is available.