First published: Sun Oct 29 2023(Updated: )
An issue was discovered in the Linux kernel through 6.5.9. During a race with SQ thread exit, an io_uring/fdinfo.c io_uring_show_fdinfo NULL pointer dereference can occur.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Linux kernel | <=6.5.9 | |
IBM Security Guardium | <=12.0 | |
debian/linux | 5.10.223-1 5.10.226-1 6.1.115-1 6.1.112-1 6.11.7-1 6.11.9-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-46862.
CVE-2023-46862 has a severity level of medium.
The affected software is the Linux kernel version up to and including 6.5.9.
The CWE for CVE-2023-46862 is CWE-476.
Yes, you can find more information on CVE-2023-46862 in the following references: [link 1](https://github.com/torvalds/linux/commit/7644b1a1c9a7ae8ab99175989bfc8676055edb46), [link 2](https://bugzilla.kernel.org/show_bug.cgi?id=218032#c4).