CVE-2023-1295: Privilege escalation with IO_RING_OP_CLOSE in the Linux Kernel
A time-of-check to time-of-use issue exists in iouring subsystem's IORINGOPCLOSE operation in the Linux kernel's versions 5.6 - 5.11 (inclusive), which allows a local user to elevate their privileges to root. Introduced in b5dba59e0cf7e2cc4d3b3b1ac5fe81ddf21959eb, patched in 9eac1904d3364254d622bf2c771c4f85cd435fc2, backported to stable in 788d0824269bef539fe31a785b1517882eafed93.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2023-1295?
CVE-2023-1295 is a vulnerability that exists in the io_uring subsystem's IORING_OP_CLOSE operation in the Linux kernel versions 5.6 - 5.11, allowing a local user to elevate their privileges to root.
Which software is affected by CVE-2023-1295?
Linux kernel versions 5.6 - 5.11 are affected by CVE-2023-1295.
What is the severity of CVE-2023-1295?
CVE-2023-1295 has a severity rating of high (7).
How can I patch CVE-2023-1295?
CVE-2023-1295 has been patched in the Linux kernel version 9eac1904d3364254d622b.
Is macOS affected by CVE-2023-1295?
No, macOS versions such as Big Sur, Monterey, and Ventura are not affected by CVE-2023-1295.