CVE-2023-6932
CVSS V2 None
CVSS V3 None
Description
A use-after-free vulnerability in the Linux kernel's ipv4: igmp component can be exploited to achieve local privilege escalation.
A race condition can be exploited to cause a timer be mistakenly registered on a RCU read locked object which is freed by another thread.
We recommend upgrading past commit e2b706c691905fe78468c361aaabc719d0a496f1.
Overview
- CVE ID
- CVE-2023-6932
- Assigner
- Vulnerability Status
- PUBLISHED
- Published Version
- 2023-12-19T14:09:15.662Z
- Last Modified Date
- 2023-12-19T14:09:15.662Z
Weakness Enumerations
References
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-6932 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-6932 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-25 06:01:52 | Added to TrackCVE |