Wind River Support Network

HomeDefectsLIN1021-6314
Fixed

LIN1021-6314 : Security Advisory - linux - CVE-2023-4459

Created: Aug 21, 2023    Updated: Aug 29, 2023
Resolved Date: Aug 29, 2023
Found In Version: 10.21.20.1
Fix Version: 10.21.20.19
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Kernel

Description

A NULL pointer dereference flaw was found in vmxnet3_rq_cleanup in drivers/net/vmxnet3/vmxnet3_drv.c in the networking sub-component in vmxnet3 in the Linux Kernel. This issue may allow a local attacker with normal user privilege to cause a denial of service due to a missing sanity check during cleanup.

CREATE(Triage):(User=admin) CVE-2023-4459 (https://nvd.nist.gov/vuln/detail/CVE-2023-4459)

CVEs


Live chat
Online