Lucene search

K
ubuntucveUbuntu.comUB:CVE-2023-1073
HistoryFeb 28, 2023 - 12:00 a.m.

CVE-2023-1073

2023-02-2800:00:00
ubuntu.com
ubuntu.com
12
linux
hid
memory corruption
privilege escalation
usb
local user

6.6 Medium

CVSS3

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

0.0004 Low

EPSS

Percentile

5.1%

A memory corruption flaw was found in the Linux kernel’s human interface
device (HID) subsystem in how a user inserts a malicious USB device. This
flaw allows a local user to crash or potentially escalate their privileges
on the system.

OSVersionArchitecturePackageVersionFilename
ubuntu18.04noarchlinux< 4.15.0-209.220UNKNOWN
ubuntu20.04noarchlinux< 5.4.0-147.164UNKNOWN
ubuntu22.04noarchlinux< 5.15.0-70.77UNKNOWN
ubuntu22.10noarchlinux< 5.19.0-42.43UNKNOWN
ubuntu16.04noarchlinux< 4.4.0-241.275UNKNOWN
ubuntu18.04noarchlinux-aws< 4.15.0-1154.167UNKNOWN
ubuntu20.04noarchlinux-aws< 5.4.0-1100.108UNKNOWN
ubuntu22.04noarchlinux-aws< 5.15.0-1034.38UNKNOWN
ubuntu22.10noarchlinux-aws< 5.19.0-1025.26UNKNOWN
ubuntu14.04noarchlinux-aws< 4.4.0-1119.125UNKNOWN
Rows per page:
1-10 of 801

References

6.6 Medium

CVSS3

Attack Vector

PHYSICAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

0.0004 Low

EPSS

Percentile

5.1%