CVE-2023-2163
Summary
| CVE | CVE-2023-2163 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-09-20 06:15:00 UTC |
| Updated | 2023-12-15 15:48:00 UTC |
| Description | Incorrect verifier pruning in BPF in Linux Kernel >=5.4 leads to unsafe
code paths being incorrectly marked as safe, resulting in arbitrary read/write in
kernel memory, lateral privilege escalation, and container escape. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| kernel/git/torvalds/linux.git - Linux kernel source tree |
MISC |
git.kernel.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 161208 Oracle Enterprise Linux Security Update for kernel (ELSA-2023-7549)
- 199670 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6300-1)
- 199764 Ubuntu Security Notification for Linux kernel (OEM) Vulnerabilities (USN-6385-1)
- 199784 Ubuntu Security Notification for Linux kernel (BlueField) Vulnerabilities (USN-6397-1)
- 242516 Red Hat Update for kernel (RHSA-2023:7549)
- 242522 Red Hat Update for kpatch-patch (RHSA-2023:7554)
- 242526 Red Hat Update for kernel-rt (RHSA-2023:7548)
- 242728 Red Hat Update for kpatch-patch (RHSA-2024:0378)
- 242731 Red Hat Update for kpatch-patch (RHSA-2024:0376)
- 242734 Red Hat Update for kpatch-patch (RHSA-2024:0381)
- 242762 Red Hat Update for kernel (RHSA-2024:0403)
- 242769 Red Hat Update for kpatch-patch (RHSA-2024:0554)
- 242785 Red Hat Update for kpatch-patch (RHSA-2024:0593)
- 242789 Red Hat Update for kernel (RHSA-2024:0575)
- 242830 Red Hat Update for kernel-rt (RHSA-2024:0563)
- 242831 Red Hat Update for kernel (RHSA-2024:0562)
- 242845 Red Hat Update for kernel (RHSA-2024:0448)
- 242846 Red Hat Update for kernel-rt (RHSA-2024:0439)
- 242855 Red Hat Update for kernel (RHSA-2024:0412)
- 242862 Red Hat Update for kernel-rt (RHSA-2024:0402)
- 243050 Red Hat Update for kernel (RHSA-2024:1250)
- 243053 Red Hat Update for kernel live patch module (RHSA-2024:1253)
- 243062 Red Hat Update for kernel-rt (RHSA-2024:1306)
- 673354 EulerOS Security Update for kernel (EulerOS-SA-2023-2843)
- 673496 EulerOS Security Update for kernel (EulerOS-SA-2023-2860)
- 755235 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:4377-1)
- 755238 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:4378-1)
- 755240 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:4375-1)
- 755249 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:4414-1)
- 755424 SUSE Enterprise Linux Security Update for the Linux Kernel (Live Patch 41 for SLE 15 SP2) (SUSE-SU-2023:4835-1)
- 755563 SUSE Security Update for the linux kernel (SUSE-SU-2023:4351-1)
- 755564 SUSE Security Update for the linux kernel (SUSE-SU-2023:4348-1)
- 755566 SUSE Security Update for the linux kernel (SUSE-SU-2023:4345-1)
- 755567 SUSE Security Update for the linux kernel (SUSE-SU-2023:4343-1)
- 907363 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (29941-1)
- 941482 AlmaLinux Security Update for kernel (ALSA-2023:7549)
- 961087 Rocky Linux Security Update for kernel-rt (RLSA-2023:7548)
- 961089 Rocky Linux Security Update for kernel (RLSA-2023:7549)