CVE-2023-28938: Medium severity Mdadm Project Mdadm vulnerability
Published Aug 11, 2023
·Updated
Uncontrolled resource consumption in some Intel(R) SSD Tools software before version mdadm-4.2-rc2 may allow a priviledged user to potentially enable denial of service via local access.
Affected Software
4 affected componentsFixes available
Mdadm Project Mdadm<4.2
Mdadm Project Mdadm=4.2-rc1
Microsoft azl3 mdadm 4.2-1
Microsoft azl3 mdadm 4.1-9
Event History
Aug 11, 2023
CVE Published
via MITRE·02:36 AM
Data Sourced
via MITRE·02:36 AM
DescriptionSeverityWeakness
Jun 30, 2024
Data Sourced
via Microsoft·02:00 PM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·02:00 PM
Affected Software
Updated
via Microsoft·02:00 PM
SeverityAffected Software
Updated
via Microsoft·02:00 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2023-28938.
2
What is the severity of CVE-2023-28938?
The severity of CVE-2023-28938 is medium with a severity value of 4.4.
3
What is the description of CVE-2023-28938?
CVE-2023-28938 is a vulnerability in some Intel(R) SSD Tools software before version mdadm-4.2-rc2 that may allow a privileged user to potentially enable denial of service via local access.
4
Which software is affected by CVE-2023-28938?
The software affected by CVE-2023-28938 is mdadm-4.2-rc2 and mdadm-4.2-rc1.
5
How can I fix CVE-2023-28938?
To fix CVE-2023-28938, update the Intel(R) SSD Tools software to version mdadm-4.2-rc2 or later.