Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-0458
HistoryApr 26, 2023 - 7:15 p.m.

Null pointer dereference

2023-04-2619:15:00
PRIOn knowledge base
www.prio-n.com
9
null pointer dereference
linux kernel
do_prlimit()
vulnerability
speculative pointer
resource control
pointer arithmetic
rlim variable
information leak
upgrade
nvd
security issue

5.6 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

14.1%

A speculative pointer dereference problem exists in the Linux Kernel on the do_prlimit() function. The resource argument value is controlled and is used in pointer arithmetic for the β€˜rlim’ variable and can be used to leak the contents. We recommend upgrading past version 6.1.8 or commitΒ 739790605705ddcf18f21782b9c99ad7d53a8c11