PT-2023-5511 · Linux+6 · Linux Kernel+6

Kyle Zeng

·

Published

2023-09-20

·

Updated

2024-12-19

·

CVE-2023-42756

CVSS v3.1

4.4

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description A flaw was found in the Netfilter subsystem of the Linux kernel. A race condition between IPSET CMD ADD and IPSET CMD SWAP can lead to a kernel panic due to the invocation of ip set put on a wrong set. This issue may allow a local user to crash the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Race Condition

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2024:2394
ALT-PU-2023-7004
ALT-PU-2023-7787
ALT-PU-2023-7838
ALT-PU-2023-8395
ALT-PU-2024-14046
ALT-PU-2024-6818
AZL-30055
BDU:2023-06159
CVE-2023-42756
DLA-3623-1
INFSA-2024_2394
MGASA-2023-0295
MGASA-2023-0296
OPENSUSE-SU-2024:13305-1
OPENSUSE-SU-2024:13704-1
RHSA-2024:2394
RHSA-2024_2394
USN-6441-1
USN-6441-2
USN-6441-3
USN-6442-1
USN-6443-1
USN-6444-1
USN-6444-2
USN-6445-1
USN-6445-2
USN-6446-1
USN-6446-2
USN-6446-3
USN-6454-1
USN-6454-2
USN-6454-3
USN-6454-4
USN-6466-1
USN-6479-1

Affected Products

Alt Linux
Almalinux
Linuxmint
Linux Kernel
Red Hat
Red Os
Ubuntu