Lucene search

K
ubuntucveUbuntu.comUB:CVE-2023-0597
HistoryFeb 23, 2023 - 12:00 a.m.

CVE-2023-0597

2023-02-2300:00:00
ubuntu.com
ubuntu.com
15
linux kernel
memory leak
unauthorized access
cpu data
exception stack
bugzilla redhat.

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

0.0004 Low

EPSS

Percentile

5.1%

A flaw possibility of memory leak in the Linux kernel cpu_entry_area
mapping of X86 CPU data to memory was found in the way user can guess
location of exception stack(s) or other important data. A local user could
use this flaw to get access to some important data with expected location
in memory.

Bugs

OSVersionArchitecturePackageVersionFilename
ubuntu18.04noarchlinux< 4.15.0-219.230UNKNOWN
ubuntu20.04noarchlinux< 5.4.0-166.183UNKNOWN
ubuntu22.04noarchlinux< 5.15.0-79.86UNKNOWN
ubuntu23.04noarchlinux< 6.2.0-18.18UNKNOWN
ubuntu18.04noarchlinux-aws< 4.15.0-1162.175UNKNOWN
ubuntu20.04noarchlinux-aws< 5.4.0-1113.123UNKNOWN
ubuntu22.04noarchlinux-aws< 5.15.0-1042.47UNKNOWN
ubuntu20.04noarchlinux-aws-5.15< 5.15.0-1041.46~20.04.1UNKNOWN
ubuntu18.04noarchlinux-aws-5.4< 5.4.0-1113.123~18.04.1UNKNOWN
ubuntu16.04noarchlinux-aws-hwe< 4.15.0-1162.175~16.04.1UNKNOWN
Rows per page:
1-10 of 641

References

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

0.0004 Low

EPSS

Percentile

5.1%