Lucene search

K
redhatcveRedhat.comRH:CVE-2023-0459
HistoryJun 21, 2023 - 5:15 a.m.

CVE-2023-0459

2023-06-2105:15:02
redhat.com
access.redhat.com
7
vulnerability
linux kernel
bypass access_ok
local attacker
kernel data leaking
mitigation
red hat product security.

0.0004 Low

EPSS

Percentile

9.0%

A vulnerability was found in copy_from_user in 64-bit versions of the Linux kernel. This flaw allows a local attacker to bypass the “access_ok” sanity check and pass a kernel pointer to copy_from_user(), resulting in kernel data leaking.

Mitigation

Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.