PT-2025-13319 · Linux+5 · Linux Kernel+5

Publicado

2023-01-24

·

Atualizado

2025-09-29

·

CVE-2023-52973

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.2.0-rc5
Description A use-after-free issue was identified in the Linux kernel, specifically in the vcs read() function. This occurs because the vc data struct can be freed by vc deallocate() after a call to console unlock() in vcs read(), leading to a potential use-after-free when vcs size() is called. The issue was reported by Syzkaller, and a fix has been implemented to move the load of the struct vc data pointer to the top of the while loop in vcs read() to avoid this issue.
Recommendations For Linux kernel versions prior to 6.2.0-rc5, update to a newer version that includes the fix for this issue. As a temporary workaround, consider disabling the vcs read() function until a patch is available. Restrict access to the vulnerable vc screen module to minimize the risk of exploitation. Avoid using the vcs size() function in the affected API endpoint until the issue is resolved.

Exploit

Correção

DoS

RCE

Use After Free

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALSA-2025_16880
BDU:2025-06253
BDU:2025-06271
CESA-2024_3138
CVE-2023-52973
OESA-2025-1432
OPENSUSE-SU-2025_1195-1
OPENSUSE-SU-2025_1263-1
RHSA-2024:0439
RHSA-2024:0448
RHSA-2024:0575
RHSA-2024:2394
RHSA-2024:3138
RHSA-2024_2394
RHSA-2024_3138
SUSE-SU-2025:02099-1
SUSE-SU-2025:1176-1
SUSE-SU-2025:1183-1
SUSE-SU-2025:1194-1
SUSE-SU-2025:1195-1
SUSE-SU-2025:1241-1
SUSE-SU-2025:1263-1
SUSE-SU-2025:1293-1
SUSE-SU-2025_02099-1
SUSE-SU-2025_1195-1
SUSE-SU-2025_1241-1
SUSE-SU-2025_1263-1
SUSE-SU-2025_1293-1

Produtos afetados

Astra Linux
Centos
Linux Kernel
Red Hat
Red Os
Suse