CVE-2023-3567
Kernel: use after free in vcs_read in drivers/tty/vt/vc_screen.c due to race
A use-after-free flaw was found in vcs_read in drivers/tty/vt/vc_screen.c in vc_screen in the Linux Kernel. This issue may allow an attacker with local user access to cause a system crash or leak internal kernel information.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
Produtos afetados
Red Hat · Red Hat Enterprise Linux 6Red Hat · Red Hat Enterprise Linux 7Red Hat · Red Hat Enterprise Linux 8Red Hat · Red Hat Enterprise Linux 8.6 Extended Update SupportRed Hat · Red Hat Enterprise Linux 8.8 Extended Update SupportRed Hat · Red Hat Enterprise Linux 9Red Hat · Red Hat Enterprise Linux 9.0 Extended Update SupportRed Hat · Red Hat Enterprise Linux 9.2 Extended Update SupportRed Hat · Red Hat Virtualization 4 for Red Hat Enterprise Linux 8Quer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://packetstormsecurity.com/files/175072/Kernel-Live-Patch-Security-Notice-LSN-0098-1.htmlhttp://packetstormsecurity.com/files/175963/Kernel-Live-Patch-Security-Notice-LSN-0099-1.htmlhttps://access.redhat.com/errata/RHSA-2024:0412https://access.redhat.com/errata/RHSA-2024:0431https://access.redhat.com/errata/RHSA-2024:0432https://access.redhat.com/errata/RHSA-2024:0439https://access.redhat.com/errata/RHSA-2024:0448https://access.redhat.com/errata/RHSA-2024:0575https://access.redhat.com/errata/RHSA-2024:2394https://access.redhat.com/errata/RHSA-2024:2950https://access.redhat.com/errata/RHSA-2024:3138https://access.redhat.com/security/cve/CVE-2023-3567