Tracker / CVE-2023-52837
CVE-2023-52837
High 7.8
In the Linux kernel, the following vulnerability has been resolved: nbd: fix uaf in nbd_open Commit 4af5f2e03013 ("nbd: use blk_mq_alloc_disk and blk_cleanup_disk") cleans up disk by blk_cleanup_disk() and it won't set disk->private_data as NULL as before. UAF may be triggered in nbd_open() if someone tries to open nbd device right after nbd_put() since nbd has been free in nbd_dev_remove(). Fix this by implementing ->free_disk and free private data in it.
Affected products and versions
| linux | linux_kernel · 5.14 → 6.1.63 |
|---|---|
| linux | linux_kernel · 6.2 → 6.5.12 |
| linux | linux_kernel · 6.6 → 6.6.2 |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.