CVE-2023-42754

CVSS V2 None CVSS V3 None
Description
A NULL pointer dereference flaw was found in the Linux kernel ipv4 stack. The socket buffer (skb) was assumed to be associated with a device before calling __ip_options_compile, which is not always the case if the skb is re-routed by ipvs. This issue may allow a local user with CAP_NET_ADMIN privileges to crash the system.
Overview
  • CVE ID
  • CVE-2023-42754
  • Assigner
  • redhat
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-10-05T18:25:22.372Z
  • Last Modified Date
  • 2024-05-22T16:41:29.829Z
History
Created Old Value New Value Data Type Notes
2024-06-25 14:04:37 Added to TrackCVE