UBUNTU-CVE-2023-39198
Dashboard / Vulnerabilities / UBUNTU-CVE-2023-39198
UBUNTU-CVE-2023-39198
Summary:
Details: A race condition was found in the QXL driver in the Linux kernel. The qxl_mode_dumb_create() function dereferences the qobj returned by the qxl_gem_object_create_with_handle(), but the handle is the only one holding a reference to it. This flaw allows an attacker to guess the returned handle value and trigger a use-after-free issue, potentially leading to a denial of service or privilege escalation.
References: https://ubuntu.com/security/CVE-2023-39198, https://git.kernel.org/linus/c611589b4259ed63b9b77be6872b1ce07ec0ac16, https://access.redhat.com/security/cve/CVE-2023-39198, https://ubuntu.com/security/notices/USN-6534-1, https://ubuntu.com/security/notices/USN-6549-1, https://ubuntu.com/security/notices/USN-6534-2, https://ubuntu.com/security/notices/USN-6549-2, https://ubuntu.com/security/notices/USN-6534-3, https://ubuntu.com/security/notices/USN-6549-3, https://ubuntu.com/security/notices/USN-6549-4, https://ubuntu.com/security/notices/USN-6549-5, https://www.cve.org/CVERecord?id=CVE-2023-39198
Affected packages
Package
Name: linux-azure
Purl: pkg:deb/ubuntu/linux-azure?arch=source&distro=esm-infra-legacy%2Ftrusty
Affected ranges
Type: ECOSYSTEM
Events:
