CVE-2023-2430: Medium severity linux kernel vulnerability
Published Jul 23, 2023
·Updated
A vulnerability was found due to missing lock for IOPOLL flaw in iocqringeventoverflow() in iouring.c in Linux Kernel. This flaw allows a local attacker with user privilege to trigger a Denial of Service threat.
Affected Software
7 affected componentsFixes available
Linux Linux kernel<6.2
Linux Linux kernel=6.2
Linux Linux kernel=6.2-rc1
Linux Linux kernel=6.2-rc2
Linux Linux kernel=6.2-rc3
Linux Linux kernel=6.2-rc4
debian/linux
5.10.223-15.10.234-16.1.129-16.1.135-16.12.25-1
Remediation
Event History
Jul 23, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Data Sourced
02:15 AM
Description
Jan 12, 2024
Data Sourced
via Launchpad·12:16 AM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·04:14 AM
RemedyDescriptionSeverityAffected Software
Mar 27, 2025
Data Sourced
via Debian·02:04 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-2430?
CVE-2023-2430 is classified as a Denial of Service vulnerability.
2
How do I fix CVE-2023-2430?
To mitigate CVE-2023-2430, update the Linux Kernel to a version later than 6.2, or apply the recommended patches provided.
3
Who can exploit CVE-2023-2430?
CVE-2023-2430 can be exploited by local attackers who have user privileges.
4
What impact does CVE-2023-2430 have on the Linux Kernel?
CVE-2023-2430 can cause a Denial of Service, disrupting normal operations of the affected Linux Kernel versions.
5
What versions of the Linux Kernel are affected by CVE-2023-2430?
CVE-2023-2430 affects Linux Kernel versions up to 6.2, including specific release candidates.