First published: Thu May 04 2023(Updated: )
illumos illumos-gate before 676abcb has a stack buffer overflow in /dev/net, leading to privilege escalation via a stat on a long file name in /dev/net.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
illumos illumos-gate | <2023-04-29 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-31284 is a vulnerability in illumos-gate that allows privilege escalation through a stack buffer overflow in /dev/net.
CVE-2023-31284 has a severity rating of 7.8, which is considered high.
CVE-2023-31284 occurs when a stat operation is performed on a long file name in /dev/net, leading to a stack buffer overflow and potential privilege escalation.
The illumos-gate software before version 676abcb is affected by CVE-2023-31284.
Yes, applying the patch or upgrading to version 676abcb of illumos-gate resolves the issue.