目标达成 感谢每一位支持者 — 我们达成了 100% 目标!

目标: 1000 元 · 已筹: 1359 元

100%

CVE-2023-52447— Linux kernel 安全漏洞

一分钟漏洞结论

影响对象
Linux Linux
利用判断
尚无明确在野利用证据,仍需结合暴露面评估
建议动作
优先检查厂商安全公告和参考链接中的修复版本;无法立即升级时,限制受影响服务暴露并加强监测。

Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于当更新或删除映射数组或映射htab中的内部映射时,该映射仍可能被不可睡眠程序或可睡眠程序访问。

CVSS 7.8 · High EPSS 0.25% · P15

可能的 ATT&CK 技术 2 AI

T1055 · Process Injection T1206

影响版本矩阵 14

厂商产品 版本范围状态
Linux Linux bba1dc0b55ac462d24ed1228ad49800c238cd6d7< 90c445799fd1dc214d7c6279c144e33a35e29ef2 affected
bba1dc0b55ac462d24ed1228ad49800c238cd6d7< 37d98fb9c3144c0fddf7f6e99aece9927ac8dce6 affected
bba1dc0b55ac462d24ed1228ad49800c238cd6d7< 62fca83303d608ad4fec3f7428c8685680bb01b0 affected
bba1dc0b55ac462d24ed1228ad49800c238cd6d7< f91cd728b10c51f6d4a39957ccd56d1e802fc8ee affected
bba1dc0b55ac462d24ed1228ad49800c238cd6d7< bfd9b20c4862f41d4590fde11d70a5eeae53dcc5 affected
bba1dc0b55ac462d24ed1228ad49800c238cd6d7< 876673364161da50eed6b472d746ef88242b2368 affected
5.9 affected
< 5.9 unaffected
… +6 条更多
获取后续新漏洞提醒 登录后订阅

一、 漏洞 CVE-2023-52447 基础信息

漏洞信息

对漏洞内容有疑问?看看神龙的深度分析是否有帮助!
查看神龙十问 ↗

尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。

Vulnerability Title
bpf: Defer the free of inner map when necessary
来源: CVE Program / CVE List V5
Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: bpf: Defer the free of inner map when necessary When updating or deleting an inner map in map array or map htab, the map may still be accessed by non-sleepable program or sleepable program. However bpf_map_fd_put_ptr() decreases the ref-counter of the inner map directly through bpf_map_put(), if the ref-counter is the last one (which is true for most cases), the inner map will be freed by ops->map_free() in a kworker. But for now, most .map_free() callbacks don't use synchronize_rcu() or its variants to wait for the elapse of a RCU grace period, so after the invocation of ops->map_free completes, the bpf program which is accessing the inner map may incur use-after-free problem. Fix the free of inner map by invoking bpf_map_free_deferred() after both one RCU grace period and one tasks trace RCU grace period if the inner map has been removed from the outer map before. The deferment is accomplished by using call_rcu() or call_rcu_tasks_trace() when releasing the last ref-counter of bpf map. The newly-added rcu_head field in bpf_map shares the same storage space with work field to reduce the size of bpf_map.
来源: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
来源: CVE Program / CVE List V5
Vulnerability Type
N/A
来源: CVE Program / CVE List V5
Vulnerability Title
Linux kernel 安全漏洞
来源: 中国国家信息安全漏洞库 CNNVD
Vulnerability Description
Linux kernel是美国Linux基金会的开源操作系统Linux所使用的内核。 Linux kernel存在安全漏洞,该漏洞源于当更新或删除映射数组或映射htab中的内部映射时,该映射仍可能被不可睡眠程序或可睡眠程序访问。
来源: 中国国家信息安全漏洞库 CNNVD
CVSS Information
N/A
来源: 中国国家信息安全漏洞库 CNNVD
Vulnerability Type
N/A
来源: 中国国家信息安全漏洞库 CNNVD

受影响产品

厂商 产品 影响版本 CPE 订阅
Linux Linux bba1dc0b55ac462d24ed1228ad49800c238cd6d7 ~ 90c445799fd1dc214d7c6279c144e33a35e29ef2 -
Linux Linux 5.9 -

二、漏洞 CVE-2023-52447 的公开POC

# POC 描述 源链接 神龙链接
AI 生成 POC 高级

未找到公开 POC。

登录以生成 AI POC

三、漏洞 CVE-2023-52447 的情报信息

请登录查看更多情报信息。

CVE-2023-52447 邮件列表归档 (1)

CVE-2023-52447 其他参考 (5)

同批安全公告 · Linux · 2024-02-22 · 共 17 条

CVE-2024-26592 9.8 CRITICAL Linux kernel 安全漏洞
CVE-2023-52444 7.8 HIGH Linux kernel 安全漏洞
CVE-2024-26589 7.8 HIGH Linux kernel 安全漏洞
CVE-2024-26586 7.8 HIGH Linux kernel 安全漏洞
CVE-2024-26591 Linux kernel 安全漏洞
CVE-2023-52452 Linux kernel 安全漏洞
CVE-2023-52451 Linux kernel 安全漏洞
CVE-2023-52450 Linux kernel 安全漏洞
CVE-2023-52449 Linux kernel 安全漏洞
CVE-2023-52448 Linux kernel 安全漏洞
CVE-2023-52446 Linux kernel 安全漏洞
CVE-2023-52445 Linux kernel 安全漏洞
CVE-2024-26590 Linux kernel 安全漏洞
CVE-2024-26588 Linux kernel 安全漏洞
CVE-2024-26587 Linux kernel 安全漏洞
CVE-2023-52443 Linux kernel 安全漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2023-52447

暂无评论


发表评论