CVE-2013-7446: Use After Free

Published Nov 17, 2015
·
Updated

A flaw was found in the Linux kernels implementation of Unix sockets. A server polling for data coming from a client socket may put the peer socket on a wait list. This peer may close the connection making the reference on the wait list no longer valid. This could lead to bypssing the permissions on a unix socket, and packets being injected into the stream. This may also panic the machine.

Additional resources:

https://groups.google.com/forum/#!topic/syzkaller/3twDUI4Cpm8

http://seclists.org/oss-sec/2015/q4/321

https://git.kernel.org/cgit/linux/kernel/git/davem/net.git/commit/?id=7d267278a9ece963d77eefec61630223fce08c6c

Other sources

Use-after-free vulnerability in net/unix/afunix.c in the Linux kernel before 4.3.3 allows local users to bypass intended AFUNIX socket permissions or cause a denial of service (panic) via crafted epollctl calls.

Launchpad

Affected Software

2 affected componentsFixes available
Linux Linux kernel<=4.3.2
debian/linux
5.10.223-15.10.234-16.1.129-16.1.135-16.12.27-1

Event History

Nov 17, 2015
Data Sourced
via Red Hat·06:24 AM
DescriptionSeverityAffected Software
Dec 28, 2015
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Jan 11, 2024
Data Sourced
via Launchpad·10:12 PM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·01:09 AM
RemedyDescriptionSeverityAffected Software

Frequently Asked Questions

1

What is CVE-2013-7446?

CVE-2013-7446 is a use-after-free vulnerability in net/unix/af_unix.c in the Linux kernel before 4.3.3.

2

How does CVE-2013-7446 affect the Linux kernel?

CVE-2013-7446 allows local users to bypass intended AF_UNIX socket permissions or cause a denial of service (panic) via crafted epoll_ctl calls.

3

What is the severity of CVE-2013-7446?

CVE-2013-7446 has a severity level of medium.

4

Which versions of the Linux kernel are affected by CVE-2013-7446?

The Linux kernel versions before 4.3.3 are affected by CVE-2013-7446.

5

How can I fix CVE-2013-7446?

To fix CVE-2013-7446, you need to update your Linux kernel to version 4.3.3 or later.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203