Use After Free vulnerability in Linux kernel traffic control index filter (tcindex) allows Privilege Escalation. The imperfect hash area can be updated while packets are traversing, which will cause a use-after-free when 'tcf_exts_exec()' is called with the destroyed tcf_ext. A local attacker user can use this vulnerability to elevate its privileges to root.
This issue affects Linux Kernel: from 4.14 before git commit ee059170b1f7e94e55fa6cadee544e176a6e59c2.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Google
Published: 2023-03-22T13:18:55.460Z
Updated: 2024-08-02T05:40:59.846Z
Reserved: 2023-03-08T20:18:23.204Z
Link: CVE-2023-1281
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2023-03-22T14:15:16.090
Modified: 2023-06-26T16:57:22.200
Link: CVE-2023-1281
Redhat