Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在资源管理错误漏洞,该漏洞源于vcs_read存在释放后重用漏洞。攻击者可利用该漏洞造成系统崩溃或泄露内核信息。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 8 | 0:4.18.0-553.rt7.342.el8_10 ~ * |
cpe:/a:redhat:enterprise_linux:8::realtime
|
|
| Red Hat | Red Hat Enterprise Linux 8 | 0:4.18.0-553.el8_10 ~ * |
cpe:/a:redhat:enterprise_linux:8::crb
|
|
| Red Hat | Red Hat Enterprise Linux 8.6 Extended Update Support | 0:4.18.0-372.87.1.el8_6 ~ * |
cpe:/o:redhat:rhev_hypervisor:4.4::el8
|
|
| Red Hat | Red Hat Enterprise Linux 8.8 Extended Update Support | 0:4.18.0-477.43.1.el8_8 ~ * |
cpe:/o:redhat:rhel_eus:8.8::baseos
|
|
| Red Hat | Red Hat Enterprise Linux 9 | 0:5.14.0-427.13.1.el9_4 ~ * |
cpe:/a:redhat:enterprise_linux:9::crb
|
|
| Red Hat | Red Hat Enterprise Linux 9 | 0:5.14.0-427.13.1.el9_4 ~ * |
cpe:/a:redhat:enterprise_linux:9::crb
|
|
| Red Hat | Red Hat Enterprise Linux 9.0 Extended Update Support | 0:5.14.0-70.85.1.el9_0 ~ * |
cpe:/o:redhat:rhel_eus:9.0::baseos
|
|
| Red Hat | Red Hat Enterprise Linux 9.0 Extended Update Support | 0:5.14.0-70.85.1.rt21.156.el9_0 ~ * |
cpe:/a:redhat:rhel_eus:9.0::realtime
|
|
| Red Hat | Red Hat Enterprise Linux 9.2 Extended Update Support | 0:5.14.0-284.48.1.el9_2 ~ * |
cpe:/a:redhat:rhel_eus:9.2::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 9.2 Extended Update Support | 0:5.14.0-284.48.1.rt14.333.el9_2 ~ * |
cpe:/a:redhat:rhel_eus:9.2::nfv
|
|
| Red Hat | Red Hat Virtualization 4 for Red Hat Enterprise Linux 8 | 0:4.18.0-372.87.1.el8_6 ~ * |
cpe:/o:redhat:rhev_hypervisor:4.4::el8
|
|
| Red Hat | Red Hat Enterprise Linux 6 | - |
cpe:/o:redhat:enterprise_linux:6
|
|
| Red Hat | Red Hat Enterprise Linux 7 | - |
cpe:/o:redhat:enterprise_linux:7
|
|
| Red Hat | Red Hat Enterprise Linux 7 | - |
cpe:/o:redhat:enterprise_linux:7
|
|
| Red Hat | Red Hat Enterprise Linux 9 | - |
cpe:/o:redhat:enterprise_linux:9
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-3812 | 7.8 HIGH | Kernel: tun: bugs for oversize packet when napi frags enabled in tun_napi_alloc_frags |
| CVE-2023-38200 | 7.5 HIGH | Keylime: registrar is subject to a dos against ssl connections |
| CVE-2023-3640 | 7.0 HIGH | Kernel: x86/mm: a per-cpu entry area leak was identified through the init_cea_offsets func |
| CVE-2023-33952 | 6.7 MEDIUM | Kernel: vmwgfx: double free within the handling of vmw_buffer_object objects |
| CVE-2023-33951 | 6.7 MEDIUM | Kernel: vmwgfx: race condition leading to information disclosure vulnerability |
| CVE-2023-3750 | 6.5 MEDIUM | Libvirt: improper locking in virstoragepoolobjlistsearch may lead to denial of service |
| CVE-2023-3019 | 6.0 MEDIUM | Qemu: e1000e: heap use-after-free in e1000e_write_packet_to_guest() |
| CVE-2023-3745 | 5.5 MEDIUM | Imagemagick: heap-buffer-overflow in pushcharpixel() in quantum-private.h |
| CVE-2023-3384 | 5.4 MEDIUM | Quay: stored cross site scripting |
No comments yet