QID 357050
Date Published: 2024-01-25
QID 357050: Amazon Linux Security Advisory for kernel : ALAS2KERNEL-5.15-2024-034
An out-of-bounds read vulnerability was found in smbcalcsize in fs/smb/client/netmisc.c in the linux kernel.
This issue could allow a local attacker to crash the system or leak internal kernel information. (
( CVE-2023-6606) a use-after-free flaw was found in the netfilter subsystem of the linux kernel.
If the catchall element is garbage-collected when the pipapo set is removed, the element can be deactivated twice.
This can cause a use-after-free issue on an nft_chain object or nft_object object, allowing a local unprivileged user with cap_net_admin capability to escalate their privileges on the system. (
( CVE-2024-0193)
Note: The preceding description block is extracted directly from the security advisory. Using automation, we have attempted to clean and format it as much as possible without introducing additional issues.
Successful exploitation of this vulnerability could lead to a securitybreach or could affect integrity, availability, and confidentiality.
- ALAS2KERNEL-5.15-2024-034 -
alas.aws.amazon.com/AL2/ALASKERNEL-5.15-2024-034.html
CVEs related to QID 357050
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ALAS2KERNEL-5.15-2024-034 | amazon linux 2 |
|