Wind River Support Network

HomeDefectsLIN1021-5737
Fixed

LIN1021-5737 : Security Advisory - linux - CVE-2023-31436

Created: May 5, 2023    Updated: Apr 17, 2024
Resolved Date: May 10, 2023
Found In Version: 10.21.20.1
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Kernel

Description

qfq_change_class in net/sched/sch_qfq.c in the Linux kernel before 6.2.13 allows an out-of-bounds write because lmax can exceed QFQ_MIN_LMAX.

CREATE(Triage):(User=admin) CVE-2023-31436 (https://nvd.nist.gov/vuln/detail/CVE-2023-31436)
Live chat
Online