CVE-2023-52735

Updated: 2025-05-05 02:54:28.894911

Description:

In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: Don't let sock_map_{close,destroy,unhash} call itself sock_map proto callbacks should never call themselves by design. Protect against bugs like [1] and break out of the recursive loop to avoid a stack overflow in favor of a resource leak. [1] https://lore.kernel.org/all/00000000000073b14905ef2e7401@google.com/


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x NONE 0
CVSS Version 3.x MEDIUM 4.4

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU kernel 5.14.0 4.4 MEDIUM Released CLSA-2025:1743193221 2024-10-21 17:35:11
CentOS 6 ELS kernel 2.6.32 4.4 MEDIUM Ignored 2024-08-27 12:15:51
CentOS 7 ELS kernel 3.10.0 4.4 MEDIUM Ignored 2024-08-27 12:15:51
CentOS 8.4 ELS kernel 4.18.0 4.4 MEDIUM Ignored 2024-08-27 12:15:51
CentOS 8.5 ELS kernel 4.18.0 4.4 MEDIUM Ignored 2024-08-27 12:15:51
CentOS Stream 8 ELS kernel 4.18.0 4.4 MEDIUM Ignored 2024-08-27 12:15:50
CloudLinux 6 ELS kernel 2.6.32 4.4 MEDIUM Ignored 2024-08-27 12:15:51
CloudLinux 7 ELS kernel 3.10.0 4.4 MEDIUM Ignored 2024-08-27 12:15:50
Oracle Linux 6 ELS kernel 2.6.32 4.4 MEDIUM Ignored 2024-08-27 12:15:51