UBUNTU-CVE-2023-32269
Dashboard / Vulnerabilities / UBUNTU-CVE-2023-32269
UBUNTU-CVE-2023-32269
Summary:
Details: An issue was discovered in the Linux kernel before 6.1.11. In net/netrom/af_netrom.c, there is a use-after-free because accept is also allowed for a successfully connected AF_NETROM socket. However, in order for an attacker to exploit this, the system must have netrom routing configured or the attacker must have the CAP_NET_ADMIN capability.
References: https://ubuntu.com/security/CVE-2023-32269, https://git.kernel.org/linus/611792920925fb088ddccbe2783c7f92fdfb6b64, https://cdn.kernel.org/pub/linux/kernel/v6.x/ChangeLog-6.1.11, https://github.com/torvalds/linux/commit/611792920925fb088ddccbe2783c7f92fdfb6b64, https://ubuntu.com/security/notices/USN-6079-1, https://ubuntu.com/security/notices/USN-6080-1, https://ubuntu.com/security/notices/USN-6081-1, https://ubuntu.com/security/notices/USN-6084-1, https://ubuntu.com/security/notices/USN-6085-1, https://ubuntu.com/security/notices/USN-6090-1, https://ubuntu.com/security/notices/USN-6091-1, https://ubuntu.com/security/notices/USN-6092-1, https://ubuntu.com/security/notices/USN-6094-1, https://ubuntu.com/security/notices/USN-6095-1, https://ubuntu.com/security/notices/USN-6096-1, https://ubuntu.com/security/notices/USN-6109-1, https://ubuntu.com/security/notices/USN-6118-1, https://ubuntu.com/security/notices/USN-6132-1, https://ubuntu.com/security/notices/USN-6133-1, https://ubuntu.com/security/notices/USN-6134-1, https://ubuntu.com/security/notices/USN-6222-1, https://ubuntu.com/security/notices/USN-6256-1, https://ubuntu.com/security/notices/USN-6385-1, https://ubuntu.com/security/notices/USN-6388-1, https://www.cve.org/CVERecord?id=CVE-2023-32269
Affected packages
Package
Name: linux-aws
Purl: pkg:deb/ubuntu/linux-aws?arch=source&distro=trusty%2Fesm
Affected ranges
Type: ECOSYSTEM
Events:
