packetstormsecurity.com
http://packetstormsecurity.com/files/174577/Kernel-Live-Patch-Security-Notice-LSN-0097-1.html CVE-2023-3390
HIGH
Use-after-free in Linux kernel's netfilter subsystem
Record summary
CVE-2023-3390 has a selected CVSS score of 7.8 (high); EIP currently links 1 repository PoC.
Description
A use-after-free vulnerability was found in the Linux kernel's netfilter subsystem in net/netfilter/nf_tables_api.c. Mishandled error handling with NFT_MSG_NEWRULE makes it possible to use a dangling pointer in the same transaction causing a use-after-free vulnerability. This flaw allows a local attacker with user access to cause a privilege escalation issue. We recommend upgrading past commit 1240eb93f0616b21c675416516ff3d74798fdc97
Description source: CVE List
Exploitation context
Available material
- Repository PoCs
- 1
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Default status: unaffected | CVE List | 3.16 to < 4.14.322 | affected |
| 4.15 to < 4.19.291 | affected | ||
| 4.20 to < 5.4.251 | affected | ||
| 5.5 to < 5.10.188 | affected | ||
| 5.11 to < 5.15.118 | affected | ||
| 5.16 to < 6.1.35 | affected | ||
| 6.2 to < 6.3.9 | affected |
Proofs of concept
1Repository PoCs
GitHubflygonty/CVE-2023-3390_PoCRepository PoCby flygontyStars: 2Not analyzed2 files
References
12git.kernel.org
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/commit?id=1240eb93f0616b21c675416516ff3d74798fdc97 kernel.dance
https://kernel.dance/1240eb93f0616b21c675416516ff3d74798fdc97 lists.debian.org
https://lists.debian.org/debian-lts-announce/2023/08/msg00001.html lists.debian.org
https://lists.debian.org/debian-lts-announce/2024/01/msg00004.html lists.debian.org
https://lists.debian.org/debian-security-announce/2023/msg00140.html lists.debian.org
https://lists.debian.org/debian-security-announce/2023/msg00153.html nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2023-3390 packetstorm.news
https://packetstorm.news/tos/aHR0cHM6Ly9wYWNrZXRzdG9ybS5uZXdzL2ZpbGVzLzE3NDU3Ny9LZXJuZWwtTGl2ZS1QYXRjaC1TZWN1cml0eS1Ob3RpY2UtTFNOLTAwOTctMS5odG1sIDE3ODQ3MjE0NzIgODFlMjk3ZjBmM2FiMTIwOTI5Nzg0ZmRlNGM2NWNjNjBhMThhMzBiOGE5NjQ0YzQ0NTFhMzJlZjhiNTk1ZTk2Yg== security.netapp.com
https://security.netapp.com/advisory/ntap-20230818-0004 debian.org
https://www.debian.org/security/2023/dsa-5448 debian.org
https://www.debian.org/security/2023/dsa-5461