CVE-2023-31436
Published Apr 28, 2023
Last updated 25 days ago
Overview
- Description
- qfq_change_class in net/sched/sch_qfq.c in the Linux kernel before 6.2.13 allows an out-of-bounds write because lmax can exceed QFQ_MIN_LMAX.
- Source
- cve@mitre.org
- NVD status
- Modified
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 7.8
- Impact score
- 5.9
- Exploitability score
- 1.8
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Severity
- HIGH
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D3B1E421-B7D1-4D32-9E05-E1369CD3432A", "versionEndExcluding": "4.14.314", "versionStartIncluding": "3.7" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "46D20E32-80A1-407D-8775-1F4CFAD37BD2", "versionEndExcluding": "4.19.282", "versionStartIncluding": "4.15" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3EFA20AE-A796-4C89-A0AC-8CC02CDE833E", "versionEndExcluding": "5.4.242", "versionStartIncluding": "4.20" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "29595EE2-9C47-46D0-B799-67D3CD5674FF", "versionEndExcluding": "5.10.179", "versionStartIncluding": "5.5.0" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4C603326-394E-408E-B5E1-011979F7BD9D", "versionEndExcluding": "5.15.109", "versionStartIncluding": "5.11" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "23989D73-416D-4C1B-8D9D-2A43A43DA115", "versionEndExcluding": "6.1.26", "versionStartIncluding": "5.16" }, { "criteria": "cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BFF8B56C-0201-4D6A-901E-C9C643C04FF6", "versionEndExcluding": "6.2.13", "versionStartIncluding": "6.2" } ], "operator": "OR" } ] } ]