CVE-2023-42753 Information

Description

An array indexing vulnerability was found in the netfilter subsystem of the Linux kernel. A missing macro could lead to a miscalculation of the h->nets array offset providing attackers with the primitive to arbitrarily increment/decrement a memory buffer out-of-bound. This issue may allow a local user to crash the system or potentially escalate their privileges on the system.

Reference

https://access.redhat.com/security/cve/CVE-2023-42753 https://www.openwall.com/lists/oss-security/2023/09/22/10 https://bugzilla.redhat.com/show_bug.cgi?id=2239843

Share on: