Lucene search

K
ubuntucveUbuntu.comUB:CVE-2023-45871
HistoryOct 15, 2023 - 12:00 a.m.

CVE-2023-45871

2023-10-1500:00:00
ubuntu.com
ubuntu.com
32
cve-2023-45871
igb driver
linux kernel
buffer size inadequacy
mtu
bugzilla
redhat
suse
launchpad
ethtool
interface
non default feature

7.5 High

CVSS3

Attack Vector

ADJACENT

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

9 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

19.9%

An issue was discovered in drivers/net/ethernet/intel/igb/igb_main.c in the
IGB driver in the Linux kernel before 6.5.3. A buffer size may not be
adequate for frames larger than the MTU.

Bugs

Notes

Author Note
Priority reason: This requires a non default feature to be set on the interface.
cascardo this requires ethtool -K ethX rx-all on
Rows per page:
1-10 of 941

References

7.5 High

CVSS3

Attack Vector

ADJACENT

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

9 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

19.9%