PT-2022-6407 · Linux+5 · Linux Kernel+5

Miaoqian Lin

·

Published

2022-07-19

·

Updated

2024-02-27

·

CVE-2023-22998

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 6.0.3
Description The issue is related to the misinterpretation of the drm gem shmem get sg table return value in the Linux kernel, specifically in the drivers/gpu/drm/virtio/virtgpu object.c file. This misinterpretation can lead to a conflict of interpretations. Exploitation of this issue may allow an attacker to cause a denial of service.
Recommendations For Linux kernel versions prior to 6.0.3, update to version 6.0.3 or later to resolve the issue. As a temporary workaround, consider restricting access to the virtgpu object.c file or the drm gem shmem get sg table function until a patch is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2022-2922
ALT-PU-2022-2925
ALT-PU-2022-3364
ALT-PU-2022-3371
ALT-PU-2023-1684
ALT-PU-2023-1741
ALT-PU-2023-1814
ALT-PU-2023-4894
AZL-13774
BDU:2023-01192
CESA-2023_2736
CESA-2023_2951
CVE-2023-22998
DLA-3404-1
OESA-2023-1323
OESA-2023-1324
OPENSUSE-SU-2023_0774-1
OPENSUSE-SU-2023_2646-1
OPENSUSE-SU-2023_2871-1
RHSA-2023:2148
RHSA-2023:2458
RHSA-2023:2736
RHSA-2023:2951
RHSA-2023_2148
RHSA-2023_2458
RHSA-2023_2736
RHSA-2023_2951
SUSE-SU-2023:0749-1
SUSE-SU-2023:0749-2
SUSE-SU-2023:0774-1
SUSE-SU-2023:0779-1
SUSE-SU-2023:0780-1
SUSE-SU-2023:1608-1
SUSE-SU-2023:1609-1
SUSE-SU-2023:1710-1
SUSE-SU-2023:2646-1
SUSE-SU-2023:2809-1
SUSE-SU-2023:2871-1

Affected Products

Alt Linux
Astra Linux
Centos
Linux Kernel
Red Hat
Suse