PT-2023-1054 · Linux+1 · Linux Kernel+1

Alex

·

Published

2019-03-25

·

Updated

2026-05-26

·

CVE-2023-0030

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A use-after-free flaw was found in the Linux kernel’s nouveau driver, related to how a user triggers a memory overflow that causes the nvkm vma tail function to fail. This issue allows a local user to crash or potentially escalate their privileges on the system. The flaw is also associated with incorrect memory overflow handling in the nvkm vmm pfn map function of the GPU Nouveau driver.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2019-1506
ALT-PU-2019-1548
ALT-PU-2020-1198
ALT-PU-2020-1501
ALT-PU-2020-2410
ALT-PU-2020-2433
ALT-PU-2021-1870
BDU:2023-00161
CVE-2023-0030

Affected Products

Alt Linux
Linux Kernel