Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Yonghong Song

#32861of 53,632
7.8Total CVSS
Vulnerabilities · 1
PT-2023-8763
7.8
2023-12-14
Linux · Linux Kernel · CVE-2023-52446
**Name of the Vulnerable Software and Affected Versions** Linux kernel versions prior to 6.7.0-rc3-00699-g90679706d486-dirty #494 **Description** The vulnerability is related to a race condition between `btf put()` and `map free()` in the Linux kernel. This issue can lead to a slab-use-after-free error, potentially allowing an attacker to impact the confidentiality, integrity, and availability of protected information. The error occurs at `bpf rb root free+0x1f8/0x2b0`. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.