PT-2023-3084 · Linux+9 · Linux Kernel+9

Zheng Wang

·

Publicado

2023-03-07

·

Atualizado

2025-03-11

·

CVE-2023-3141

CVSS v3.1

7.1

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux Kernel (affected versions not specified)
Description A use-after-free flaw was found in the r592 remove function in drivers/memstick/host/r592.c related to media access in the Linux Kernel. This issue allows a local attacker to crash the system at device disconnect, possibly leading to a kernel information leak. The flaw is associated with a race condition due to concurrent access to resources, which could impact the confidentiality and availability of protected information.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Race Condition

Use After Free

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALSA-2023:7077
ALT-PU-2023-1969
ALT-PU-2023-1994
ALT-PU-2023-2038
ALT-PU-2023-4663
ALT-PU-2023-4764
ALT-PU-2024-4263
ALT-PU-2024-4843
AZL-27154
BDU:2023-03172
CESA-2023_6901
CESA-2023_7077
CVE-2023-3141
DLA-3508-1
DLA-3623-1
MGASA-2023-0201
MGASA-2023-0202
OESA-2023-1379
OESA-2023-1380
OESA-2023-1381
OESA-2023-1382
OESA-2023-1493
OPENSUSE-SU-2023_2646-1
OPENSUSE-SU-2023_2859-1
OPENSUSE-SU-2023_2871-1
OPENSUSE-SU-2024:12994-1
OPENSUSE-SU-2024:13704-1
RHSA-2023:6583
RHSA-2023:6901
RHSA-2023:7077
RHSA-2023_6583
RHSA-2023_6901
RHSA-2023_7077
RHSA-2024:0575
RHSA-2024:0724
SUSE-SU-2023:2646-1
SUSE-SU-2023:2782-1
SUSE-SU-2023:2804-1
SUSE-SU-2023:2805-1
SUSE-SU-2023:2808-1
SUSE-SU-2023:2809-1
SUSE-SU-2023:2810-1
SUSE-SU-2023:2820-1
SUSE-SU-2023:2822-1
SUSE-SU-2023:2830-1
SUSE-SU-2023:2831-1
SUSE-SU-2023:2834-1
SUSE-SU-2023:2859-1
SUSE-SU-2023:2871-1
SUSE-SU-2023:3333-1
USN-6231-1
USN-6252-1
USN-6254-1
USN-6260-1
USN-6283-1
USN-6284-1
USN-6300-1
USN-6301-1
USN-6311-1
USN-6312-1
USN-6314-1
USN-6331-1
USN-6332-1
USN-6337-1
USN-6347-1
USN-6385-1

Produtos afetados

Alt Linux
Almalinux
Astra Linux
Centos
Linux Kernel
Linuxmint
Red Hat
Red Os
Suse
Ubuntu