An issue was discovered in fl_set_geneve_opt in net/sched/cls_flower.c in the Linux kernel before 6.3.7. It allows an out-of-bounds write in the flower classifier code via TCA_FLOWER_KEY_ENC_OPTS_GENEVE packets. This may result in denial of service or privilege escalation.
Advisories
Source ID Title
Debian DLA Debian DLA DLA-3508-1 linux security update
Debian DLA Debian DLA DLA-3623-1 linux-5.10 security update
Debian DSA Debian DSA DSA-5448-1 linux security update
Debian DSA Debian DSA DSA-5480-1 linux security update
EUVD EUVD EUVD-2023-39785 An issue was discovered in fl_set_geneve_opt in net/sched/cls_flower.c in the Linux kernel before 6.3.7. It allows an out-of-bounds write in the flower classifier code via TCA_FLOWER_KEY_ENC_OPTS_GENEVE packets. This may result in denial of service or privilege escalation.
Ubuntu USN Ubuntu USN USN-6192-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-6193-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-6194-1 Linux kernel (OEM) vulnerabilities
Ubuntu USN Ubuntu USN USN-6205-1 Linux kernel (GKE) vulnerabilities
Ubuntu USN Ubuntu USN USN-6206-1 Linux kernel (OEM) vulnerabilities
Ubuntu USN Ubuntu USN USN-6212-1 Linux kernel (Intel IoTG) vulnerabilities
Ubuntu USN Ubuntu USN USN-6220-1 Linux kernel vulnerabilities
Ubuntu USN Ubuntu USN USN-6223-1 Linux kernel (Azure CVM) vulnerabilities
Ubuntu USN Ubuntu USN USN-6234-1 Linux kernel (Xilinx ZynqMP) vulnerability
Ubuntu USN Ubuntu USN USN-6235-1 Linux kernel (OEM) vulnerabilities
Ubuntu USN Ubuntu USN USN-6256-1 Linux kernel (IoT) vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-05-05T15:57:20.355Z

Reserved: 2023-06-16T00:00:00.000Z

Link: CVE-2023-35788

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-06-16T21:15:09.340

Modified: 2025-05-05T16:15:41.317

Link: CVE-2023-35788

cve-icon Redhat

Severity : Important

Publid Date: 2023-05-29T00:00:00Z

Links: CVE-2023-35788 - Bugzilla

cve-icon OpenCVE Enrichment

No data.