PT-2025-38215 · Linux+4 · Linux Kernel+4

Publicado

2023-08-02

·

Atualizado

2025-12-04

·

CVE-2023-53365

CVSS v2.0

6.0

Média

VetorAV:L/AC:H/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.5.0-rc3-00044-g0a8db05b571a
Description A flaw exists in the Linux kernel related to IPv6 Multicast Routing (ip6mr). Specifically, a potential skb under panic issue occurs within the ip6mr cache report() function when a VLAN device is configured on a pim6reg device. This can lead to an invalid memory address being used during an skb push operation, resulting in a kernel BUG. The issue arises when a DAD (Duplicate Address Detection) Neighbor Solicitation packet is sent through reg vif xmit(), triggering the vulnerability in ip6mr cache report(). The skb push() function attempts to adjust the skb->data pointer by a negative offset, leading to an out-of-bounds memory access.
Recommendations Update to Linux kernel version 6.5.0-rc3-00044-g0a8db05b571a or a later version to resolve this issue.

Exploit

Correção

Improper Resource Release

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALSA-2025_16880
BDU:2026-02276
CESA-2024_3138
CVE-2023-53365
RHSA-2024:2394
RHSA-2024:3138
RHSA-2024_2394
RHSA-2024_3138
SUSE-SU-2025:03600-1
SUSE-SU-2025:03614-1
SUSE-SU-2025:03634-1
SUSE-SU-2025:20851-1
SUSE-SU-2025:20861-1
SUSE-SU-2025:20870-1
SUSE-SU-2025:20898-1
SUSE-SU-2025:3751-1
SUSE-SU-2025:4057-1
SUSE-SU-2025:4111-1
SUSE-SU-2025:4132-1
SUSE-SU-2025:4135-1
SUSE-SU-2025:4139-1
SUSE-SU-2025:4141-1
SUSE-SU-2025:4149-1
SUSE-SU-2025:4188-1
SUSE-SU-2025:4315-1
SUSE-SU-2025:4320-1

Produtos afetados

Astra Linux
Centos
Linux Kernel
Red Hat
Suse