First published: Wed Jul 12 2023(Updated: )
It was discovered that the XFS file system implementation in the Linux kernel did not properly perform metadata validation when mounting certain images. An attacker could use this to specially craft a file system image that, when mounted, could cause a denial of service (system crash). (CVE-2023-2124) Wei Chen discovered that the InfiniBand RDMA communication manager implementation in the Linux kernel contained an out-of-bounds read vulnerability. A local attacker could use this to cause a denial of service (system crash). (CVE-2023-2176)
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/linux-image-6.2.0-1008-raspi | <6.2.0-1008.10 | 6.2.0-1008.10 |
=23.04 | ||
All of | ||
ubuntu/linux-image-virtual | <6.2.0.25.25 | 6.2.0.25.25 |
=23.04 | ||
All of | ||
ubuntu/linux-image-generic-64k | <6.2.0.25.25 | 6.2.0.25.25 |
=23.04 | ||
All of | ||
ubuntu/linux-image-generic | <6.2.0.25.25 | 6.2.0.25.25 |
=23.04 | ||
All of | ||
ubuntu/linux-image-aws | <6.2.0.1007.8 | 6.2.0.1007.8 |
=23.04 | ||
All of | ||
ubuntu/linux-image-raspi | <6.2.0.1008.11 | 6.2.0.1008.11 |
=23.04 | ||
All of | ||
ubuntu/linux-image-lowlatency-64k | <6.2.0.1008.8 | 6.2.0.1008.8 |
=23.04 | ||
All of | ||
ubuntu/linux-image-6.2.0-1008-lowlatency | <6.2.0-1008.8 | 6.2.0-1008.8 |
=23.04 | ||
All of | ||
ubuntu/linux-image-6.2.0-1008-kvm | <6.2.0-1008.8 | 6.2.0-1008.8 |
=23.04 | ||
All of | ||
ubuntu/linux-image-6.2.0-1008-lowlatency-64k | <6.2.0-1008.8 | 6.2.0-1008.8 |
=23.04 | ||
All of | ||
ubuntu/linux-image-6.2.0-25-generic | <6.2.0-25.25 | 6.2.0-25.25 |
=23.04 | ||
All of | ||
ubuntu/linux-image-raspi-nolpae | <6.2.0.1008.11 | 6.2.0.1008.11 |
=23.04 | ||
All of | ||
ubuntu/linux-image-6.2.0-25-generic-lpae | <6.2.0-25.25 | 6.2.0-25.25 |
=23.04 | ||
All of | ||
ubuntu/linux-image-kvm | <6.2.0.1008.8 | 6.2.0.1008.8 |
=23.04 | ||
All of | ||
ubuntu/linux-image-generic-lpae | <6.2.0.25.25 | 6.2.0.25.25 |
=23.04 | ||
All of | ||
ubuntu/linux-image-6.2.0-25-generic-64k | <6.2.0-25.25 | 6.2.0-25.25 |
=23.04 | ||
All of | ||
ubuntu/linux-image-6.2.0-1007-aws | <6.2.0-1007.7 | 6.2.0-1007.7 |
=23.04 | ||
All of | ||
ubuntu/linux-image-lowlatency | <6.2.0.1008.8 | 6.2.0.1008.8 |
=23.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The CVE ID for this vulnerability is CVE-2023-2124.
This vulnerability could cause a denial of service (system crash).
Linux kernel versions 6.2.0-1008.10 and earlier are affected by this vulnerability.
To fix this vulnerability, update your Linux kernel to version 6.2.0-1008.10 or later.
You can find more information about this vulnerability on the Ubuntu Security Notices website.