Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-62927
HistoryJul 27, 2023 - 12:00 a.m.

Linux kernel buffer overflow vulnerability (CNVD-2023-62927)

2023-07-2700:00:00
China National Vulnerability Database
www.cnvd.org.cn
15
linux kernel
buffer overflow
qfq_change_agg()
out-of-bounds writes
local privilege escalation

0.0004 Low

EPSS

Percentile

5.1%

Linux kernel is the kernel used by Linux, the open source operating system of the Linux Foundation in the United States. A security vulnerability exists in the Linux kernel that originates in the qfq_change_agg() function in net/sched/sch_qfq.c that allows out-of-bounds writes. An attacker could exploit the vulnerability to escalate local privileges.

CPENameOperatorVersion
linux linux kernel >=3.8,lt6.5