CVE-2023-2006
Published Apr 24, 2023
Last updated a year ago
Overview
- Description
- A race condition was found in the Linux kernel's RxRPC network protocol, within the processing of RxRPC bundles. This issue results from the lack of proper locking when performing operations on an object. This may allow an attacker to escalate privileges and execute arbitrary code in the context of the kernel.
- Source
- secalert@redhat.com
- NVD status
- Analyzed
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 7
- Impact score
- 5.9
- Exploitability score
- 1
- Vector string
- CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
- Severity
- HIGH
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8C645DEF-D909-4D54-B5C9-B07E5B6EDB36", "versionEndExcluding": "5.10.157", "versionStartIncluding": "5.10" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "899FBA32-27B2-4660-BC94-C43ED4349EB5", "versionEndExcluding": "5.15.81", "versionStartIncluding": "5.11" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BA01D181-8E71-42E1-ACF4-7A5B65006EC8", "versionEndExcluding": "6.0.11", "versionStartIncluding": "5.16" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:netapp:hci_baseboard_management_controller:h300s:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "27227B35-932A-4035-B39F-6A455753C0D6" }, { "criteria": "cpe:2.3:a:netapp:hci_baseboard_management_controller:h410c:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "489D20B9-166F-423D-8C48-A23D3026E33B" }, { "criteria": "cpe:2.3:a:netapp:hci_baseboard_management_controller:h410s:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A4AD592C-222D-4C6F-B176-8145A1A5AFEC" }, { "criteria": "cpe:2.3:a:netapp:hci_baseboard_management_controller:h500s:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8603654B-A8A9-4DEB-B0DD-C82E1C885749" }, { "criteria": "cpe:2.3:a:netapp:hci_baseboard_management_controller:h700s:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C855C933-F271-45E6-8E85-8D7CF2EF1BE6" } ], "operator": "OR" } ] } ]