CVE-2023-7192

Updated: 2024-11-23 03:55:28.82324

Description:

A memory leak problem was found in ctnetlink_create_conntrack in net/netfilter/nf_conntrack_netlink.c in the Linux Kernel. This issue may allow a local attacker with CAP_NET_ADMIN privileges to cause a denial of service (DoS) attack due to a refcount overflow.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0
CVSS Version 3.x MEDIUM 4.4

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU kernel 5.14.0 4.4 MEDIUM Released CLSA-2024:1715000749 2024-05-06 14:31:23
CentOS 6 ELS kernel 2.6.32 4.4 MEDIUM Ignored 2024-01-09 08:40:17
CentOS 7 ELS kernel 3.10.0 4.4 MEDIUM Ignored 2024-01-09 08:40:15
CentOS 8.4 ELS kernel 4.18.0 4.4 MEDIUM Ignored 2024-01-09 08:40:15
CentOS 8.5 ELS kernel 4.18.0 4.4 MEDIUM Ignored 2024-01-09 08:40:16
CloudLinux 6 ELS kernel 2.6.32 4.4 MEDIUM Ignored 2024-01-09 08:40:17
Oracle Linux 6 ELS kernel 2.6.32 4.4 MEDIUM Ignored 2024-01-09 10:08:39
Ubuntu 16.04 ELS linux-hwe 4.15.0 4.4 MEDIUM Released CLSA-2024:1705079299 2024-01-12 13:08:53
Ubuntu 16.04 ELS linux 4.4.0 4.4 MEDIUM Released CLSA-2024:1705078045 2024-01-12 13:08:51
Ubuntu 18.04 ELS linux 4.15.0 4.4 MEDIUM Released CLSA-2024:1705081601 2024-01-12 13:08:52