https://seclists.org/oss-sec/2023/q4/309: Mayhem: Targeted Corruption of Register and Stack Variables
Published Dec 21, 2023
·Updated
Affected Software
4 affected components
OpenSSH OpenSSH
OpenSSL OpenSSL
MySQL mysql
Sudo Sudo
Frequently Asked Questions
1
What is the severity of CVE-2023-XXXXX?
The severity of CVE-2023-XXXXX is considered high due to the potential impact on security-sensitive code execution.
2
How do I fix CVE-2023-XXXXX?
To fix CVE-2023-XXXXX, implement the recommended mitigation strategies outlined in the associated paper.
3
Which software is affected by CVE-2023-XXXXX?
CVE-2023-XXXXX affects OpenSSH, OpenSSL, MySQL, and Sudo.
4
What are the potential impacts of CVE-2023-XXXXX?
The potential impacts of CVE-2023-XXXXX include unauthorized access or control over security-sensitive operations.
5
What type of vulnerability is CVE-2023-XXXXX?
CVE-2023-XXXXX is a targeted corruption vulnerability that can affect register and stack variables through fault injection.