CVE-2023-39193
Summary
| CVE | CVE-2023-39193 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-10-09 18:15:00 UTC |
| Updated | 2023-11-16 01:52:00 UTC |
| Description | A flaw was found in the Netfilter subsystem in the Linux kernel. The sctp_mt_check did not validate the flag_count field. This flaw allows a local privileged (CAP_NET_ADMIN) attacker to trigger an out-of-bounds read, leading to a crash or information disclosure. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 161211 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel (ELSA-2023-13019)
- 199936 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6494-1)
- 199970 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6494-2)
- 199976 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6534-1)
- 199979 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6532-1)
- 199996 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6549-1)
- 199997 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6548-1)
- 199999 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6548-2)
- 200002 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6534-2)
- 200003 Ubuntu Security Notification for Linux kernel (GKE) Vulnerabilities (USN-6549-2)
- 200006 Ubuntu Security Notification for Linux kernel (Oracle) Vulnerabilities (USN-6548-3)
- 200007 Ubuntu Security Notification for Linux kernel (Low Latency) Vulnerabilities (USN-6549-3)
- 200010 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6534-3)
- 200024 Ubuntu Security Notification for Linux kernel (Intel IoTG) Vulnerabilities (USN-6549-4)
- 200035 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6549-5)
- 200037 Ubuntu Security Notification for Linux kernel (IoT) Vulnerabilities (USN-6548-5)
- 200113 Ubuntu Security Notification for Linux kernel (GCP) Vulnerabilities (USN-6635-1)
- 356357 Amazon Linux Security Advisory for kernel : ALAS-2023-1838
- 356371 Amazon Linux Security Advisory for kernel : ALAS2023-2023-356
- 356409 Amazon Linux Security Advisory for kernel : ALAS2-2023-2264
- 356567 Amazon Linux Security Advisory for kernel : ALAS2KERNEL-5.15-2023-027
- 356572 Amazon Linux Security Advisory for kernel : ALAS2KERNEL-5.10-2023-040
- 356606 Amazon Linux Security Advisory for kernel : ALAS2KERNEL-5.4-2023-053
- 390293 Oracle Managed Virtualization (VM) Server for x86 Security Update for kernel (OVMSA-2023-0025)
- 6000429 Debian Security Update for linux (DLA 3710-1)
- 6140151 AWS Bottlerocket Security Update for kernel (GHSA-v325-fvj8-hvxm)
- 673534 EulerOS Security Update for kernel (EulerOS-SA-2024-1086)
- 673563 EulerOS Security Update for kernel (EulerOS-SA-2024-1144)
- 673595 EulerOS Security Update for kernel (EulerOS-SA-2023-3247)
- 673644 EulerOS Security Update for kernel (EulerOS-SA-2023-3336)
- 673692 EulerOS Security Update for kernel (EulerOS-SA-2023-3275)
- 673923 EulerOS Security Update for kernel (EulerOS-SA-2024-1062)
- 673995 EulerOS Security Update for kernel (EulerOS-SA-2024-1275)
- 674042 EulerOS Security Update for kernel (EulerOS-SA-2023-3304)
- 755059 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:4035-1)
- 755060 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:4031-1)
- 755063 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:4032-1)
- 755082 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:4058-1)
- 755083 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:4057-1)
- 755085 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:4072-1)
- 755086 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:4071-1)
- 755096 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:4093-1)
- 755229 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:4072-2)
- 755235 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:4377-1)
- 755238 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:4378-1)
- 755240 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:4375-1)
- 755249 SUSE Enterprise Linux Security Update for the Linux Kernel (SUSE-SU-2023:4414-1)
- 755564 SUSE Security Update for the linux kernel (SUSE-SU-2023:4348-1)
- 755565 SUSE Security Update for the linux kernel (SUSE-SU-2023:4347-1)
- 755566 SUSE Security Update for the linux kernel (SUSE-SU-2023:4345-1)
- 755567 SUSE Security Update for the linux kernel (SUSE-SU-2023:4343-1)
- 907444 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (31270)
- 907565 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (31270-1)