An issue was discovered in fl_set_geneve_opt in net/sched/cls_flower.c in the Linux kernel before 6.3.7. It allows an out-of-bounds write in the flower classifier code via TCA_FLOWER_KEY_ENC_OPTS_GENEVE packets. This may result in denial of service or privilege escalation.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
DLA-3508-1 | linux security update |
![]() |
DLA-3623-1 | linux-5.10 security update |
![]() |
DSA-5448-1 | linux security update |
![]() |
DSA-5480-1 | linux security update |
![]() |
EUVD-2023-39785 | An issue was discovered in fl_set_geneve_opt in net/sched/cls_flower.c in the Linux kernel before 6.3.7. It allows an out-of-bounds write in the flower classifier code via TCA_FLOWER_KEY_ENC_OPTS_GENEVE packets. This may result in denial of service or privilege escalation. |
![]() |
USN-6192-1 | Linux kernel vulnerabilities |
![]() |
USN-6193-1 | Linux kernel vulnerabilities |
![]() |
USN-6194-1 | Linux kernel (OEM) vulnerabilities |
![]() |
USN-6205-1 | Linux kernel (GKE) vulnerabilities |
![]() |
USN-6206-1 | Linux kernel (OEM) vulnerabilities |
![]() |
USN-6212-1 | Linux kernel (Intel IoTG) vulnerabilities |
![]() |
USN-6220-1 | Linux kernel vulnerabilities |
![]() |
USN-6223-1 | Linux kernel (Azure CVM) vulnerabilities |
![]() |
USN-6234-1 | Linux kernel (Xilinx ZynqMP) vulnerability |
![]() |
USN-6235-1 | Linux kernel (OEM) vulnerabilities |
![]() |
USN-6256-1 | Linux kernel (IoT) vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-05-05T15:57:20.355Z
Reserved: 2023-06-16T00:00:00.000Z
Link: CVE-2023-35788

No data.

Status : Modified
Published: 2023-06-16T21:15:09.340
Modified: 2025-05-05T16:15:41.317
Link: CVE-2023-35788


No data.