CVE-2023-34319

Updated: 2023-09-27

Description:

The fix for XSA-423 added logic to Linux'es netback driver to deal with a frontend splitting a packet in a way such that not all of the headers would come in one piece. Unfortunately the logic introduced there didn't account for the extreme case of the entire packet being split into as many pieces as permitted by the protocol, yet still being smaller than the area that's specially dealt with to keep all (possible) headers together. Such an unusual packet would therefore trigger a buffer overrun in the driver.

CVSS3: 7.8


Vendor State

OS Vendor version Errata
Ubuntu 14.04 HWE ESM 4.4.0-246.280~14.04.1 USN-6439-1
Ubuntu 22.04 AWS 5.15.0-1048.53 USN-6446-1
Ubuntu 16.04 ESM 4.4.0-246.280 USN-6439-1
Ubuntu 16.04 HWE ESM 4.15.0-219.230~16.04.1 USN-6440-1
Ubuntu 16.04 GCP ESM 4.15.0-1156.173~16.04.1 USN-6440-1
Ubuntu 16.04 AWS HWE ESM 4.15.0-1162.175~16.04.1 USN-6440-3
Ubuntu 20.04 HWE Azure 5.15.0-1050.57~20.04.1 USN-6446-1
Ubuntu 22.04 Azure 5.15.0-1050.57 USN-6446-1
Ubuntu 20.04 HWE AWS 5.15.0-1048.53~20.04.1 USN-6446-1
Debian 12 6.1.52-1 DSA-5492-1
Amazon Linux 1 4.14.322-170.535.amzn1 ALAS-2023-1827
Debian 11 5.10.191-1 DSA-5480-1
Debian 11 cloud 5.10.191-1 DSA-5480-1
Ubuntu 20.04 GCP 5.4.0-1116.125 USN-6441-1
Ubuntu 20.04 Azure 5.4.0-1118.125 USN-6441-1
Amazon Linux 2 4.14.322-244.536.amzn2 ALAS-2023-2268
Ubuntu 20.04 AWS 5.4.0-1112.121 USN-6441-1
Ubuntu 16.04 AWS ESM 4.4.0-1162.177 USN-6439-1
Ubuntu 16.04 Azure ESM 4.15.0-1171.186~16.04.1 USN-6440-1
Ubuntu 20.04 5.4.0-165.182 USN-6441-1
Ubuntu 22.04 5.15.0-87.97 USN-6446-1
Amazon Linux 2 5.10 5.10.192-182.736.amzn2 ALASKERNEL-5.10-2023-039
Amazon Linux 2 5.4 5.4.253-167.359.amzn2 ALASKERNEL-5.4-2023-054

KernelCare State

OS Original kernel version State
Ubuntu 14.04 HWE ESM
Will Not Fix
Ubuntu 22.04 AWS
Planned
Ubuntu 16.04 ESM
Will Not Fix
Ubuntu 16.04 HWE ESM
Planned
Ubuntu 16.04 GCP ESM
Planned
Ubuntu 16.04 AWS HWE ESM
Planned
Ubuntu 20.04 HWE Azure
Planned
Ubuntu 22.04 Azure
Planned
Ubuntu 20.04 HWE AWS
Planned
Debian 12
Planned
Amazon Linux 1
Planned
Debian 11
In Progress
Debian 11 cloud
In Progress
Ubuntu 20.04 GCP
5.4.0-1049.53 show all hide all
5.4.0-1068.72
Released
Ubuntu 20.04 Azure
5.4.0-1070.73 show all hide all
5.4.0-1072.75 5.4.0-1073.76 5.4.0-1074.77 5.4.0-1077.80 5.4.0-1020.20 5.4.0-1022.22 5.4.0-1023.23 5.4.0-1024.24 5.4.0-1025.25 5.4.0-1026.26 5.4.0-1027.27 5.4.0-1029.29 5.4.0-1031.32 5.4.0-1032.33 5.4.0-1033.34 5.4.0-1034.35 5.4.0-1035.36 5.4.0-1036.38 5.4.0-1037.39 5.4.0-1038.40 5.4.0-1039.41 5.4.0-1040.42 5.4.0-1041.43 5.4.0-1043.45 5.4.0-1044.46 5.4.0-1046.48 5.4.0-1047.49 5.4.0-1048.50 5.4.0-1049.51 5.4.0-1051.53 5.4.0-1055.57 5.4.0-1056.58 5.4.0-1058.60 5.4.0-1059.62 5.4.0-1061.64 5.4.0-1062.65 5.4.0-1063.66 5.4.0-1064.67 5.4.0-1065.68 5.4.0-1067.70 5.4.0-1068.71 5.4.0-1069.72 5.4.0-1078.81 5.4.0-1080.83 5.4.0-1083.87 5.4.0-1085.90 5.4.0-1086.91 5.4.0-1089.94 5.4.0-1090.95 5.4.0-1091.96 5.4.0-1094.100 5.4.0-1098.104 5.4.0-1100.106 5.4.0-1101.107 5.4.0-1103.109 5.4.0-1104.110 5.4.0-1105.111 5.4.0-1106.112 5.4.0-1107.113 5.4.0-1108.114 5.4.0-1109.115 5.4.0-1110.116 5.4.0-1111.117 5.4.0-1112.118 5.4.0-1113.119 5.4.0-1114.120 5.4.0-1115.122 5.4.0-1116.123 5.4.0-1117.124
Released
Amazon Linux 2
4.14.318-240.529.amzn2 show all hide all
4.14.304-226.531.amzn2 4.14.305-227.531.amzn2 4.14.309-231.529.amzn2 4.14.311-233.529.amzn2 4.14.313-235.533.amzn2 4.14.314-237.533.amzn2 4.14.314-238.539.amzn2 4.14.318-241.531.amzn2 4.14.320-242.534.amzn2 4.14.320-243.544.amzn2
Released
Ubuntu 20.04 AWS
5.4.0-1085.92 show all hide all
5.4.0-1086.93 5.4.0-1088.96 5.4.0-1089.97 5.4.0-1092.100 5.4.0-1093.101 5.4.0-1105.113 5.4.0-1111.120 5.4.0-1011.11 5.4.0-1015.15 5.4.0-1016.16 5.4.0-1017.17 5.4.0-1018.18 5.4.0-1019.19 5.4.0-1020.20 5.4.0-1021.21 5.4.0-1022.22 5.4.0-1023.23 5.4.0-1024.24 5.4.0-1025.25 5.4.0-1026.26 5.4.0-1028.29 5.4.0-1029.30 5.4.0-1030.31 5.4.0-1031.32 5.4.0-1032.33 5.4.0-1033.34 5.4.0-1034.35 5.4.0-1035.37 5.4.0-1036.38 5.4.0-1037.39 5.4.0-1038.40 5.4.0-1039.41 5.4.0-1041.43 5.4.0-1043.45 5.4.0-1045.47 5.4.0-1047.49 5.4.0-1048.50 5.4.0-1049.51 5.4.0-1051.53 5.4.0-1054.57 5.4.0-1055.58 5.4.0-1056.59 5.4.0-1057.60 5.4.0-1058.61 5.4.0-1059.62 5.4.0-1060.63 5.4.0-1061.64 5.4.0-1063.66 5.4.0-1064.67 5.4.0-1065.68 5.4.0-1066.69 5.4.0-1068.72 5.4.0-1069.73 5.4.0-1071.76 5.4.0-1072.77 5.4.0-1073.78 5.4.0-1074.79 5.4.0-1075.80 5.4.0-1078.84 5.4.0-1080.87 5.4.0-1081.88 5.4.0-1083.90 5.4.0-1084.91 5.4.0-1094.102 5.4.0-1096.104 5.4.0-1097.105 5.4.0-1099.107 5.4.0-1100.108 5.4.0-1101.109 5.4.0-1102.110 5.4.0-1103.111 5.4.0-1104.112 5.4.0-1106.114 5.4.0-1107.115 5.4.0-1108.116 5.4.0-1109.118 5.4.0-1110.119
Released
Ubuntu 16.04 AWS ESM
Will Not Fix
Ubuntu 16.04 Azure ESM
Planned
Ubuntu 20.04
5.4.0-66.74 show all hide all
5.4.0-67.75 5.4.0-70.78 5.4.0-150.167 5.4.0-152.169 5.4.0-153.170 5.4.0-155.172 5.4.0-156.173 5.4.0-159.176 5.4.0-162.179 5.4.0-163.180 5.4.0-164.181 5.4.0-37.41 5.4.0-38.42 5.4.0-39.43 5.4.0-40.44 5.4.0-42.46 5.4.0-43.47 5.4.0-44.48 5.4.0-45.49 5.4.0-46.50 5.4.0-47.51 5.4.0-54.60 5.4.0-55.61 5.4.0-100.113 5.4.0-104.118 5.4.0-105.119 5.4.0-107.121 5.4.0-109.123 5.4.0-110.124 5.4.0-112.126 5.4.0-113.127 5.4.0-117.132 5.4.0-120.136 5.4.0-121.137 5.4.0-122.138 5.4.0-123.139 5.4.0-124.140 5.4.0-125.141 5.4.0-126.142 5.4.0-128.144 5.4.0-131.147 5.4.0-132.148 5.4.0-133.149 5.4.0-135.152 5.4.0-136.153 5.4.0-137.154 5.4.0-139.156 5.4.0-144.161 5.4.0-145.162 5.4.0-146.163 5.4.0-147.164 5.4.0-148.165 5.4.0-149.166 5.4.0-26.30 5.4.0-28.32 5.4.0-29.33 5.4.0-30.34 5.4.0-31.35 5.4.0-32.36 5.4.0-33.37 5.4.0-34.38 5.4.0-48.52 5.4.0-49.53 5.4.0-51.56 5.4.0-52.57 5.4.0-53.59 5.4.0-56.62 5.4.0-57.63 5.4.0-58.64 5.4.0-59.65 5.4.0-60.67 5.4.0-61.69 5.4.0-62.70 5.4.0-63.71 5.4.0-64.72 5.4.0-65.73 5.4.0-71.79 5.4.0-72.80 5.4.0-73.82 5.4.0-74.83 5.4.0-77.86 5.4.0-80.90 5.4.0-81.91 5.4.0-84.94 5.4.0-86.97 5.4.0-88.99 5.4.0-89.100 5.4.0-90.101 5.4.0-91.102 5.4.0-92.103 5.4.0-94.106 5.4.0-96.109 5.4.0-97.110 5.4.0-99.112
Released
Ubuntu 22.04
Planned
Amazon Linux 2 5.10
Planned
Amazon Linux 2 5.4
Planned