6
CVSSv3

CVE-2023-39193

Published: 09/10/2023 Updated: 30/04/2024
CVSS v3 Base Score: 6 | Impact Score: 5.2 | Exploitability Score: 0.8
VMScore: 0

Vulnerability Summary

A flaw was found in the Netfilter subsystem in the Linux kernel. The sctp_mt_check did not validate the flag_count field. This flaw allows a local privileged (CAP_NET_ADMIN) malicious user to trigger an out-of-bounds read, leading to a crash or information disclosure.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel

redhat enterprise linux 8.0

redhat enterprise linux 9.0

fedoraproject fedora 38