Linux kernel built with the IPSec keysocket support(CONFIGNETKEY=m) is
vulnerable to an information leakage flaw. It occurs while using keysocket's
notify interface.
A user/program able to access the PFKEY keysockets could use this flaw to
leak kernel memory bytes.
The (1) keynotifysaflush and (2) keynotifypolicyflush functions in net/key/afkey.c in the Linux kernel before 3.10 do not initialize certain structure members, which allows local users to obtain sensitive information from kernel heap memory by reading a broadcast message from the notify interface of an IPSec keysocket.
CVE-2013-2234 is considered a medium severity vulnerability due to its potential for information leakage from the kernel.
2
How do I fix CVE-2013-2234?
To fix CVE-2013-2234, it is recommended to upgrade to a patched version of the Linux kernel, specifically versions 5.10.223-1, 5.10.226-1, 6.1.123-1, 6.1.128-1, 6.12.12-1, or 6.12.13-1.
3
What types of systems are affected by CVE-2013-2234?
CVE-2013-2234 affects Linux systems running kernels with IPSec key_socket support enabled.
4
What is the impact of CVE-2013-2234?
The impact of CVE-2013-2234 is that an attacker with access to the PF_KEY key_sockets may leak sensitive kernel memory.
5
Who is affected by CVE-2013-2234?
Users and administrators of Linux systems with vulnerable kernel versions are affected by CVE-2013-2234.
SecAlerts Pty Ltd. 132 Wickham Terrace Fortitude Valley, QLD 4006, Australia info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.