Description
A null pointer dereference flaw was found in the Linux kernel's DECnet networking protocol. This issue could allow a remote user to crash the system.
Exploits (1)
References (7)
Core 7
Core References
Mailing List, Third Party Advisory
https://lists.debian.org/debian-lts-announce/2023/07/msg00030.html
Mailing List, Third Party Advisory
https://lists.debian.org/debian-lts-announce/2023/10/msg00027.html
Exploit, Mailing List, Third Party Advisory
https://seclists.org/oss-sec/2023/q2/276
Third Party Advisory
https://security.netapp.com/advisory/ntap-20230824-0005/
Third Party Advisory
https://www.debian.org/security/2023/dsa-5480
Third Party Advisory vdb-entry
x_refsource_redhat
https://access.redhat.com/security/cve/CVE-2023-3338
Issue Tracking issue-tracking
x_refsource_redhat
https://bugzilla.redhat.com/show_bug.cgi?id=2218618
Scores
CVSS v3
6.5
EPSS
0.0772
EPSS Percentile
92.0%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CISA SSVC
Vulnrichment
Exploitation
poc
Automatable
no
Technical Impact
partial
Details
CWE
CWE-476
Status
published
Products (4)
debian/debian_linux
10.0
debian/debian_linux
11.0
linux/linux_kernel
< 6.5
netapp/active_iq_unified_manager
Published
Jun 30, 2023
Tracked Since
Feb 18, 2026