First published: Mon May 01 2023(Updated: )
A flaw in the Linux Kernel found. A use-after-free vulnerability in the Linux Kernel Performance Events system can be exploited to achieve local privilege escalation. The perf_group_detach function did not check the event's siblings' attach_state before calling add_event_to_groups(), but remove_on_exec made it possible to call list_del_event() on before detaching from their group, making it possible to use a dangling pointer causing a use-after-free vulnerability. Reference: <a href="https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=fd0815f632c24878e325821943edccc7fde947a2">https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=fd0815f632c24878e325821943edccc7fde947a2</a>
Credit: cve-coordination@google.com cve-coordination@google.com cve-coordination@google.com
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | >=5.13<5.15.104 | |
Linux Kernel | >=5.16<6.1.21 | |
Linux Kernel | >=6.2<6.2.8 | |
Linux Kernel | =6.3-rc1 | |
Linux Kernel | =6.3-rc2 | |
Linux Kernel | >=5.13<6.3 | |
debian/linux | 5.10.223-1 5.10.226-1 6.1.123-1 6.1.128-1 6.12.12-1 6.12.15-1 | |
IBM Security Verify Governance - Identity Manager | <=ISVG 10.0.2 | |
IBM Security Verify Governance, Identity Manager | <=ISVG 10.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-2235 is classified as a local privilege escalation vulnerability in the Linux Kernel.
To fix CVE-2023-2235, update the Linux Kernel to a patched version such as 5.10.223-1 or 6.1.128-1.
CVE-2023-2235 affects Linux Kernel versions between 5.13 and 6.3, including specific release candidates.
Exploiting CVE-2023-2235 could allow an attacker to gain elevated privileges on the affected system.
CVE-2023-2235 affects IBM Security Verify Governance, Identity Manager software components and virtual appliances, among other Linux Kernel installations.