CVE-2023-0461
Summary
| CVE | CVE-2023-0461 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-02-28 15:15:00 UTC |
| Updated | 2023-06-06 19:16:00 UTC |
| Description | There is a use-after-free vulnerability in the Linux Kernel which can be exploited to achieve local privilege escalation. To reach the vulnerability kernel configuration flag CONFIG_TLS or CONFIG_XFRM_ESPINTCP has to be configured, but the operation does not require any privilege.
There is a use-after-free bug of icsk_ulp_data of a struct inet_connection_sock.
When CONFIG_TLS is enabled, user can install a tls context (struct tls_context) on a connected tcp socket. The context is not cleared if this socket is disconnected and reused as a listener. If a new socket is created from the listener, the context is inherited and vulnerable.
The setsockopt TCP_ULP operation does not require any privilege.
We recommend upgrading past commit 2c02d41d71f90a5168391b6a5f2954112ba2307c |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 160583 Oracle Enterprise Linux Security Update for kernel (ELSA-2023-2458)
- 160692 Oracle Enterprise Linux Security Update for kernel (ELSA-2023-2951)
- 181765 Debian Security Update for linux-5.10 (DLA 3404-1)
- 181768 Debian Security Update for linux (DLA 3403-1)
- 184758 Debian Security Update for linux (CVE-2023-0461)
- 199207 Ubuntu Security Notification for Linux kernel (OEM) Vulnerabilities (USN-5914-1)
- 199208 Ubuntu Security Notification for Linux kernel (OEM) Vulnerabilities (USN-5915-1)
- 199209 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5912-1)
- 199210 Ubuntu Security Notification for Linux kernel (OEM) Vulnerabilities (USN-5913-1)
- 199211 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5911-1)
- 199212 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5917-1)
- 199214 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5920-1)
- 199217 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5925-1)
- 199218 Ubuntu Security Notification for Linux kernel (Azure) Vulnerabilities (USN-5927-1)
- 199220 Ubuntu Security Notification for Linux kernel (Raspberry Pi) Vulnerabilities (USN-5929-1)
- 199223 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5935-1)
- 199224 Ubuntu Security Notification for Linux kernel (Raspberry Pi) Vulnerabilities (USN-5934-1)
- 199226 Ubuntu Security Notification for Linux kernel (GCP) Vulnerabilities (USN-5939-1)
- 199227 Ubuntu Security Notification for Linux kernel (GKE) Vulnerabilities (USN-5938-1)
- 199229 Ubuntu Security Notification for Linux kernel (KVM) Vulnerabilities (USN-5941-1)
- 199230 Ubuntu Security Notification for Linux kernel (Raspberry Pi) Vulnerabilities (USN-5940-1)
- 199238 Ubuntu Security Notification for Linux kernel (KVM) Vulnerabilities (USN-5950-1)
- 199239 Ubuntu Security Notification for Linux kernel (IBM) Vulnerabilities (USN-5951-1)
- 199243 Ubuntu Security Notification for Linux kernel (Intel IoTG) Vulnerabilities (USN-5962-1)
- 199255 Ubuntu Security Notification for Linux kernel (OEM) Vulnerabilities (USN-5976-1)
- 199276 Ubuntu Security Notification for Linux kernel (BlueField) Vulnerabilities (USN-6000-1)
- 199502 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5975-1)
- 199541 Ubuntu Security Notification for Linux kernel (Azure) Vulnerabilities (USN-5924-1)
- 199566 Ubuntu Security Notification for Linux kernel (GCP) Vulnerabilities (USN-6007-1)
- 199567 Ubuntu Security Notification for Linux kernel (HWE) Vulnerabilities (USN-5883-1)
- 199581 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-5919-1)
- 241308 Red Hat Update for kernel-rt (RHSA-2023:1556)
- 241315 Red Hat Update for kernel (RHSA-2023:1557)
- 241327 Red Hat Update for kpatch-patch (RHSA-2023:1662)
- 241357 Red Hat Update for kernel (RHSA-2023:1841)
- 241374 Red Hat Update for kpatch-patch (RHSA-2023:1923)
- 241417 Red Hat Update for kernel security (RHSA-2023:2458)
- 241468 Red Hat Update for kernel-rt (RHSA-2023:2148)
- 241504 Red Hat Update for kernel security (RHSA-2023:2951)
- 241527 Red Hat Update for kernel-rt (RHSA-2023:2736)
- 241588 Red Hat Update for kernel (RHSA-2023:3465)
- 241590 Red Hat Update for kernel-rt (RHSA-2023:3470)
- 241591 Red Hat Update for kpatch-patch (RHSA-2023:3490)
- 241610 Red Hat Update for kernel (RHSA-2023:3190)
- 241629 Red Hat Update for kpatch-patch (RHSA-2023:3191)
- 241825 Red Hat Update for kpatch-patch (RHSA-2023:4146)
- 241831 Red Hat Update for kernel-rt (RHSA-2023:4126)
- 241832 Red Hat Update for kernel (RHSA-2023:4125)
- 378468 Alibaba Cloud Linux Security Update for cloud-kernel (ALINUX3-SA-20230042)
- 378473 Alibaba Cloud Linux Security Update for cloud-kernel (ALINUX2-SA-2023:0021)
- 378512 Alibaba Cloud Linux Security Update for cloud-kernel (ALINUX3-SA-2023:0042)
- 378710 Alibaba Cloud Linux Security Update for cloud-kernel (ALINUX3-SA-2023:0079)
- 672981 EulerOS Security Update for kernel (EulerOS-SA-2023-1848)
- 673005 EulerOS Security Update for kernel (EulerOS-SA-2023-1873)
- 673017 EulerOS Security Update for kernel (EulerOS-SA-2023-1978)
- 673047 EulerOS Security Update for kernel (EulerOS-SA-2023-1956)
- 673074 EulerOS Security Update for kernel (EulerOS-SA-2023-2193)
- 673121 EulerOS Security Update for kernel (EulerOS-SA-2023-2296)
- 673157 EulerOS Security Update for kernel (EulerOS-SA-2023-2272)
- 753902 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:1800-1)
- 753905 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:1811-1)
- 755842 SUSE Enterprise Linux Security Update for the linux kernel (SUSE-SU-2023:0774-1)
- 755851 SUSE Enterprise Linux Security Update for the linux kernel (SUSE-SU-2023:2646-1)
- 756032 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 0 for SLE 15 SP5) (SUSE-SU-2024:1039-1)
- 756047 SUSE Enterprise Linux Security Update for the Linux Kernel RT (Live Patch 0 for SLE 15 SP5) (SUSE-SU-2024:1097-1)
- 906625 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (25353-3)
- 906715 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (25343-1)
- 941023 AlmaLinux Security Update for kernel (ALSA-2023:2458)
- 941061 AlmaLinux Security Update for kernel-rt (ALSA-2023:2148)
- 941096 AlmaLinux Security Update for kernel (ALSA-2023:2951)
- 941114 AlmaLinux Security Update for kernel-rt (ALSA-2023:2736)