CVE-2023-53995
Last modified
CVE-2023-53995 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: net: ipv4: fix one memleak in __inet_del_ifa() I got the below warning when do fuzzing test: unregister_netdevice: waiting for bond0 to become free. Usage count = 2 It can be repoduced via: ip link add bond0 type bond sysctl -w net.ipv4.conf.bond0.promote_secondaries=1 ip addr add 4.117.174.103/0 scope 0x40 dev bond0 ip addr add 192.168.100.111/255.255.255.254 scope 0 dev bond0 ip addr add 0.0.0.4/0 scope 0x40 secondary dev bond0 ip addr del 4.117.174.103/0 scope 0x40 dev bond0 ip link delete bond0 type bond In this reproduction test case, an incorrect 'last_prim' is found in __inet_del_ifa(), as a result, the secondary address(0.0.0.4/0 scope 0x40) is lost. EPSS estimates a 0.17% chance of exploitation in the next 30 days.
Description
In the Linux kernel, the following vulnerability has been resolved: net: ipv4: fix one memleak in __inet_del_ifa() I got the below warning when do fuzzing test: unregister_netdevice: waiting for bond0 to become free. Usage count = 2 It can be repoduced via: ip link add bond0 type bond sysctl -w net.ipv4.conf.bond0.promote_secondaries=1 ip addr add 4.117.174.103/0 scope 0x40 dev bond0 ip addr add 192.168.100.111/255.255.255.254 scope 0 dev bond0 ip addr add 0.0.0.4/0 scope 0x40 secondary dev bond0 ip addr del 4.117.174.103/0 scope 0x40 dev bond0 ip link delete bond0 type bond In this reproduction test case, an incorrect 'last_prim' is found in __inet_del_ifa(), as a result, the secondary address(0.0.0.4/0 scope 0x40) is lost. The memory of the secondary address is leaked and the reference of in_device and net_device is leaked. Fix this problem: Look for 'last_prim' starting at location of the deleted IP and inserting the promoted IP into the location of 'last_prim'.
Metrics
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux | >= 0ff60a45678e67b2547256a636fd00c1667ce4fa, < 5624f26a3574500ce23929cb2c9976a0dec9920a; >= 0ff60a45678e67b2547256a636fd00c1667ce4fa, < 7c8ddcdab1b900bed69cad6beef477fff116289e; >= 0ff60a45678e67b2547256a636fd00c1667ce4fa, < 2f1e86014d0cc084886c36a2d77bc620e2d42618; >= 0ff60a45678e67b2547256a636fd00c1667ce4fa, < 980f8445479814509a3cd55a8eabaae1c9030a4c; >= 0ff60a45678e67b2547256a636fd00c1667ce4fa, < 42652af5360d30b43b06057c193739e7dfb18f42; >= 0ff60a45678e67b2547256a636fd00c1667ce4fa, < ac28b1ec6135649b5d78b028e47264cb3ebca5ea |
| Linux | Linux | 2.6.15 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2023-53995?
How severe is CVE-2023-53995?
How do I fix CVE-2023-53995?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2023
- CVE-2023-5399 A CWE-22: Improper Limitation of a Pathname to a Restri…9.8
- CVE-2023-53990In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2023-53991In the Linux kernel, the following vulnerability has been re…
- CVE-2023-53992In the Linux kernel, the following vulnerability has been re…
- CVE-2023-53993In the Linux kernel, the following vulnerability has been re…
- CVE-2023-53994In the Linux kernel, the following vulnerability has been re…
- CVE-2023-53996In the Linux kernel, the following vulnerability has been re…9.3
- CVE-2023-53997In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2023-53998In the Linux kernel, the following vulnerability has been re…
- CVE-2023-53999In the Linux kernel, the following vulnerability has been re…
- CVE-2023-5400Server receiving a malformed message based on a using the sp…8.1
- CVE-2023-54000In the Linux kernel, the following vulnerability has been re…
Are you affected by CVE-2023-53995?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
