PT-2023-1660 · Linux+5 · Linux Kernel+5

Pietro Borrello

·

Published

2023-02-09

·

Updated

2024-06-15

·

CVE-2023-1078

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux Kernel (affected versions not specified)
Description The issue is related to a flaw in the Linux Kernel's RDS protocol, specifically in the rds rm zerocopy callback() function. This function uses list entry() on the head of a list, causing a type confusion. A local user can trigger this issue with rds message put(), leading to struct rds msg zcopy info *info pointing to something else that is potentially controlled by the local user. This results in an out of bounds access and a lock corruption. The flaw is associated with incorrect handling of a data block list.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

NULL Pointer Dereference

Memory Corruption

Type Confusion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2023-1248
ALT-PU-2023-1249
ALT-PU-2023-1267
ALT-PU-2023-1271
ALT-PU-2023-1278
ALT-PU-2023-1282
ALT-PU-2023-1309
ALT-PU-2023-1311
ALT-PU-2023-1317
ALT-PU-2023-1358
ALT-PU-2023-1378
ALT-PU-2023-4894
ALT-PU-2024-4263
ALT-PU-2024-4843
BDU:2023-01205
CVE-2023-1078
DLA-3403-1
DLA-3404-1
MGASA-2023-0087
MGASA-2023-0088
OESA-2023-1173
OESA-2023-1174
OESA-2023-1177
OESA-2023-1178
OPENSUSE-SU-2024:12814-1
OPENSUSE-SU-2024:13704-1
SUSE-SU-2023:1574-1
SUSE-SU-2023:1576-1
SUSE-SU-2023:1591-1
SUSE-SU-2023:1592-1
SUSE-SU-2023:1595-1
SUSE-SU-2023:1605-1
SUSE-SU-2023:1608-1
SUSE-SU-2023:1609-1
SUSE-SU-2023:1610-1
SUSE-SU-2023:1621-1
SUSE-SU-2023:1639-1
SUSE-SU-2023:1645-1
SUSE-SU-2023:1647-1
SUSE-SU-2023:1649-1
SUSE-SU-2023:1651-1
SUSE-SU-2023:1708-1
SUSE-SU-2023:1710-1
SUSE-SU-2023:1800-1
SUSE-SU-2023:1811-1
SUSE-SU-2023:1892-1
SUSE-SU-2023:2809-1
USN-5978-1
USN-6079-1
USN-6080-1
USN-6085-1
USN-6090-1
USN-6091-1
USN-6094-1
USN-6096-1
USN-6109-1
USN-6118-1
USN-6132-1
USN-6133-1
USN-6134-1
USN-6222-1
USN-6256-1

Affected Products

Alt Linux
Astra Linux
Linux Kernel
Linuxmint
Suse
Ubuntu