A flaw was found in the subsequent get_user_pages_fast in the Linux kernel’s interface for symmetric key cipher algorithms in the skcipher_recvmsg of crypto/algif_skcipher.c function. This flaw allows a local user to crash the system.
References
Link | Resource |
---|---|
https://access.redhat.com/security/cve/CVE-2023-3108 | Third Party Advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=2221472 | Issue Tracking Patch Third Party Advisory |
https://github.com/torvalds/linux/commit/9399f0c51489ae8c16d6559b82a452fdc1895e91 | Patch |
Configurations
History
No history.
Information
Published : 2023-07-11 16:15
Updated : 2023-07-20 01:56
NVD link : CVE-2023-3108
Mitre link : CVE-2023-3108
CVE.ORG link : CVE-2023-3108
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')