Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-5178
HistoryNov 01, 2023 - 5:15 p.m.

Double free

2023-11-0117:15:00
PRIOn knowledge base
www.prio-n.com
7
use-after-free
nvme/tcp
logical bug
linux kernel
double-free
remote code execution
local privilege escalation

9.2 High

AI Score

Confidence

High

0.024 Low

EPSS

Percentile

90.1%

A use-after-free vulnerability was found in drivers/nvme/target/tcp.cinnvmet_tcp_free_crypto` due to a logical bug in the NVMe/TCP subsystem in the Linux kernel. This issue may allow a malicious user to cause a use-after-free and double-free problem, which may permit remote code execution or lead to local privilege escalation.

References