PT-2023-8119 · Linux+8 · Linux Kernel+8
Rohit Keshri
·
Published
2023-12-06
·
Updated
2026-02-18
·
CVE-2023-6531
CVSS v3.1
7.0
High
| Vector | AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Linux Kernel (affected versions not specified)
Description
A use-after-free flaw was found in the Linux Kernel due to a race problem in the unix garbage collector's deletion of SKB races with
unix stream read generic() on the socket that the SKB is queued on. This issue is related to the io uring component and the scm fp copy function in the net/core/scm.c module. The exploitation of this flaw may allow an attacker to impact the confidentiality, integrity, and availability of protected information.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
DoS
Race Condition
Use After Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Almalinux
Astra Linux
Linux Kernel
Linuxmint
Red Hat
Red Os
Suse
Ubuntu