ALAS2LIVEPATCH-2023-132 --- kernel-livepatch-4.14.311-233.529ID: oval:org.secpod.oval:def:1701388 | Date: (C)2023-07-07 (M)2024-04-25 |
Class: PATCH | Family: unix |
An out-of-bounds memory access flaw was found in the Linux kernel's XFS file system in how a user restores an XFS image after failure . This flaw allows a local user to crash or potentially escalate their privileges on the system. do_tls_getsockopt in net/tls/tls_main.c in the Linux kernel through 6.2.6 lacks a lock_sock call, leading to a race condition
Product: |
kernel-livepatch-4.14.311-233.529 |