CVE-2023-3106
Last modified
CVE-2023-3106 is a high-severity vulnerability rated 7.8/10 on the CVSS scale. A NULL pointer dereference vulnerability was found in netlink_dump. This issue can occur when the Netlink socket receives the message(sendmsg) for the XFRM_MSG_GETSA, XFRM_MSG_GETPOLICY type message, and the DUMP flag is set and can cause a denial of service or possibly another unspecified impact. EPSS estimates a 0.28% chance of exploitation in the next 30 days.
Description
A NULL pointer dereference vulnerability was found in netlink_dump. This issue can occur when the Netlink socket receives the message(sendmsg) for the XFRM_MSG_GETSA, XFRM_MSG_GETPOLICY type message, and the DUMP flag is set and can cause a denial of service or possibly another unspecified impact. Due to the nature of the flaw, privilege escalation cannot be fully ruled out, although it is unlikely.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Linux | Linux Kernel | >= 3.15, < 3.16.39 | — |
| Linux | Linux Kernel | >= 3.17, < 4.4.223 | — |
| Linux | Linux Kernel | >= 4.5, < 4.7.10 | — |
| Linux | Linux Kernel | 4.8 | Rc1 |
| Fedoraproject | Fedora | 38 | — |
References
- https://access.redhat.com/security/cve/CVE-2023-3106Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2221501Issue Tracking, Patch, Third Party Advisory
- https://access.redhat.com/security/cve/CVE-2023-3106Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2221501Issue Tracking, Patch, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2023-3106?
How severe is CVE-2023-3106?
How do I fix CVE-2023-3106?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2023
- CVE-2023-31047In Django 3.2 before 3.2.19, 4.x before 4.1.9, and 4.2 befor…9.8
- CVE-2023-31048The OPC UA .NET Standard Reference Server before 1.4.371.86.…5.3
- CVE-2023-3105The LearnDash LMS plugin for WordPress is vulnerable to Inse…8.8
- CVE-2023-31056CloverDX before 5.17.3 writes passwords to the audit log in …6.5
- CVE-2023-31058Deserialization of Untrusted Data Vulnerability in Apache So…7.5
- CVE-2023-31059Repetier Server through 1.4.10 allows ..%5c directory traver…7.5
- CVE-2023-31060Repetier Server through 1.4.10 executes as SYSTEM. This can …9.8
- CVE-2023-31061Repetier Server through 1.4.10 does not have CSRF protection…8.8
- CVE-2023-31062Improper Privilege Management Vulnerabilities in Apache Soft…9.8
- CVE-2023-31064Files or Directories Accessible to External Parties vulnerab…7.5
- CVE-2023-31065Insufficient Session Expiration vulnerability in Apache Soft…9.1
- CVE-2023-31066Files or Directories Accessible to External Parties vulnerab…9.1
Are you affected by CVE-2023-3106?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
