First published: Sun Jul 23 2023(Updated: )
A vulnerability was found due to missing lock for IOPOLL flaw in io_cqring_event_overflow() in io_uring.c in Linux Kernel. This flaw allows a local attacker with user privilege to trigger a Denial of Service threat.
Credit: secalert@redhat.com secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | <6.2 | |
Linux Kernel | =6.2 | |
Linux Kernel | =6.2-rc1 | |
Linux Kernel | =6.2-rc2 | |
Linux Kernel | =6.2-rc3 | |
Linux Kernel | =6.2-rc4 | |
debian/linux | 5.10.223-1 5.10.234-1 6.1.129-1 6.1.133-1 6.12.21-1 6.12.22-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-2430 is classified as a Denial of Service vulnerability.
To mitigate CVE-2023-2430, update the Linux Kernel to a version later than 6.2, or apply the recommended patches provided.
CVE-2023-2430 can be exploited by local attackers who have user privileges.
CVE-2023-2430 can cause a Denial of Service, disrupting normal operations of the affected Linux Kernel versions.
CVE-2023-2430 affects Linux Kernel versions up to 6.2, including specific release candidates.