QID 356408
Date Published: 2023-10-19
QID 356408: Amazon Linux Security Advisory for mdadm : ALAS2-2023-2275
Buffer overflow in some intel(r) ssd tools software before version mdadm-4.2-rc2 may allow a privileged user to potentially enable escalation of privilege via local access. (
( CVE-2023-28736) uncontrolled resource consumption in some intel(r) ssd tools software before version mdadm-4.2-rc2 may allow a priviledged user to potentially enable denial of service via local access. (
( CVE-2023-28938)
Note: The preceding description block is extracted directly from the security advisory. Using automation, we have attempted to clean and format it as much as possible without introducing additional issues.
Successful exploitation of this vulnerability could lead to a securitybreach or could affect integrity, availability, and confidentiality.
Solution
Please refer to Amazon advisory: ALAS2-2023-2275 for affected packages and patching details, or update with your package manager.
Vendor References
- ALAS2-2023-2275 -
alas.aws.amazon.com/AL2/ALAS-2023-2275.html
CVEs related to QID 356408
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ALAS2-2023-2275 | amazon linux 2 |
|