vulnerability
CentOS Linux: CVE-2023-4208: Important: kpatch-patch security update (Multiple Advisories)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
7 | (AV:L/AC:L/Au:S/C:C/I:C/A:C) | 09/06/2023 | 11/08/2023 | 01/28/2025 |
Severity
7
CVSS
(AV:L/AC:L/Au:S/C:C/I:C/A:C)
Published
09/06/2023
Added
11/08/2023
Modified
01/28/2025
Description
A use-after-free vulnerability in the Linux kernel's net/sched: cls_u32 component can be exploited to achieve local privilege escalation.
When u32_change() is called on an existing filter, the whole tcf_result struct is always copied into the new instance of the filter. This causes a problem when updating a filter bound to a class, as tcf_unbind_filter() is always called on the old instance in the success path, decreasing filter_cnt of the still referenced class and allowing it to be deleted, leading to a use-after-free.
We recommend upgrading past commit 3044b16e7c6fe5d24b1cdbcf1bd0a9d92d1ebd81.
Solution(s)
centos-upgrade-kernelcentos-upgrade-kernel-rtcentos-upgrade-kpatch-patch-3_10_0-1160_102_1centos-upgrade-kpatch-patch-3_10_0-1160_102_1-debuginfocentos-upgrade-kpatch-patch-3_10_0-1160_90_1centos-upgrade-kpatch-patch-3_10_0-1160_90_1-debuginfocentos-upgrade-kpatch-patch-3_10_0-1160_92_1centos-upgrade-kpatch-patch-3_10_0-1160_92_1-debuginfocentos-upgrade-kpatch-patch-3_10_0-1160_95_1centos-upgrade-kpatch-patch-3_10_0-1160_95_1-debuginfocentos-upgrade-kpatch-patch-3_10_0-1160_99_1centos-upgrade-kpatch-patch-3_10_0-1160_99_1-debuginfo
References

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.