Lucene search

K
cveRedhatCVE-2023-0210
HistoryMar 27, 2023 - 10:15 p.m.

CVE-2023-0210

2023-03-2722:15:21
CWE-787
CWE-122
redhat
web.nvd.nist.gov
153
cve-2023-0210
linux kernel
bug
crash
ksmbd
ntlmv2
authentication
nvd

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

7.2

Confidence

High

EPSS

0.005

Percentile

76.0%

A bug affects the Linux kernel’s ksmbd NTLMv2 authentication and is known to crash the OS immediately in Linux-based systems.

Affected configurations

Nvd
Vulners
Node
linuxlinux_kernelRange5.155.15.87
OR
linuxlinux_kernelRange5.166.0.19
OR
linuxlinux_kernelRange6.16.1.5
VendorProductVersionCPE
linuxlinux_kernel*cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "Linux Kernel",
    "versions": [
      {
        "version": "Kernel 6.2 RC4",
        "status": "affected"
      }
    ]
  }
]

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

7.2

Confidence

High

EPSS

0.005

Percentile

76.0%