PT-2022-6577 · Linux+3 · Linux Kernel+3

Ayaz Mammadov

+1

·

Published

2022-01-14

·

Updated

2023-12-14

·

CVE-2023-2006

CVSS v3.1

7.0

High

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux Kernel (affected versions not specified)
Description A race condition was found in the Linux kernel's RxRPC network protocol, within the processing of RxRPC bundles. This issue results from the lack of proper locking when performing operations on an object. This may allow an attacker to escalate privileges and execute arbitrary code in the context of the kernel.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Race Condition

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2022-3364
ALT-PU-2022-3371
ALT-PU-2023-1023
ALT-PU-2023-1064
ALT-PU-2023-1066
ALT-PU-2023-1684
ALT-PU-2023-1741
ALT-PU-2023-1814
ALT-PU-2023-4894
ALT-PU-2023-7007
ALT-PU-2023-7682
AZL-26376
BDU:2023-02604
CVE-2023-2006
OESA-2023-1265
OESA-2023-1268
OPENSUSE-SU-2023_4730-1
OPENSUSE-SU-2023_4731-1
OPENSUSE-SU-2023_4732-1
OPENSUSE-SU-2023_4734-1
OPENSUSE-SU-2023_4782-1
SUSE-SU-2023:4730-1
SUSE-SU-2023:4731-1
SUSE-SU-2023:4732-1
SUSE-SU-2023:4734-1
SUSE-SU-2023:4782-1
SUSE-SU-2023:4810-1
SUSE-SU-2023_4730-1
SUSE-SU-2023_4731-1
SUSE-SU-2023_4734-1
SUSE-SU-2023_4782-1
SUSE-SU-2023_4810-1
ZDI-23-439

Affected Products

Alt Linux
Astra Linux
Linux Kernel
Suse