CVE-2023-1637
Summary
| CVE | CVE-2023-1637 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-03-27 22:15:00 UTC |
| Updated | 2023-11-07 04:04:00 UTC |
| Description | A flaw that boot CPU could be vulnerable for the speculative execution behavior kind of attacks in the Linux kernel X86 CPU Power management options functionality was found in the way user resuming CPU from suspend-to-RAM. A local user could use this flaw to potentially get unauthorized access to some memory of the CPU similar to the speculative execution behavior kind of attacks. |
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|
| Operating System |
Linux |
Linux Kernel |
5.18 |
rc2 |
All |
All |
References
| Reference | Source | Link | Tags |
|---|
| kernel/git/torvalds/linux.git - Linux kernel source tree |
MISC |
git.kernel.org |
|
| 27398 – x86: Improve testing false positive for tst-cpu-features-cpuinfo with bad hardware. |
MISC |
sourceware.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 160912 Oracle Enterprise Linux Security Update for kernel (ELSA-2023-5069)
- 181712 Debian Security Update for linux (CVE-2023-1637)
- 242147 Red Hat Update for kernel (RHSA-2023:5628)
- 242188 Red Hat Update for kernel-rt (RHSA-2023:5794)
- 672935 EulerOS Security Update for kernel (EulerOS-SA-2023-1824)
- 673208 EulerOS Security Update for kernel (EulerOS-SA-2023-2315)
- 673393 EulerOS Security Update for kernel (EulerOS-SA-2023-2647)
- 674113 EulerOS Security Update for kernel (EulerOS-SA-2023-2689)
- 754120 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:2611-1)
- 754145 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:2651-1)
- 754160 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:2808-1)
- 754167 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:2822-1)
- 754168 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:2830-1)
- 755851 SUSE Enterprise Linux Security Update for the linux kernel (SUSE-SU-2023:2646-1)
- 941249 AlmaLinux Security Update for kernel (ALSA-2023:5069)
- 941254 AlmaLinux Security Update for kernel-rt (ALSA-2023:5091)
- 961015 Rocky Linux Security Update for kernel-rt (RLSA-2023:5091)