CVE-2023-1075

Aliases:UBUNTU-CVE-2023-1075DEBIAN-CVE-2023-1075CGA-2g66-qmhr-hg4mCGA-2qc3-h8ff-66rmCGA-2v7c-7q46-2669CGA-335p-7638-qr3rCGA-37wj-f6m7-225jCGA-38gp-627q-vhgxCGA-3g62-9qc6-7j8wCGA-43v3-76pq-9h53CGA-44xq-cqxw-8qv9CGA-45pf-fv8v-hvqxCGA-488m-p858-35p3CGA-4gfc-8c9g-5vwcCGA-4jw3-wr96-9c5fCGA-4qhf-788r-86v6CGA-4x43-7wq2-p7m4CGA-528q-gg4c-cq9vCGA-5prh-c9f5-vcrxCGA-5v4j-v763-hjr8CGA-5wg5-pwr8-5477CGA-5xhv-h684-x694CGA-5xwp-4qq5-7wrgCGA-6356-ccp3-6m3pCGA-63qj-3577-5xg9CGA-65q3-6w7q-6h7fCGA-663x-rvx7-px68CGA-668g-88hf-22w3CGA-6v35-mwvq-98rwCGA-6vv7-q3h5-f9jmCGA-746f-fhcx-mj9wCGA-798m-9rw6-6vffCGA-7g3j-hh57-j8m7CGA-7gph-2hrp-3ff6CGA-7j9j-6xh7-9mfvCGA-7wj2-jhh7-vq65CGA-82vh-prfh-5rr7CGA-8f95-hcvh-hxq8CGA-8q2g-7h2m-8wrvCGA-8qfq-qxrc-xxmmCGA-8qpc-g636-58cgCGA-8xj6-wvhh-p3q4CGA-92hg-h73j-qf2rCGA-9433-mgcj-cxjjCGA-956v-7p6p-75gmCGA-9c7m-g632-v9x2CGA-9f6x-6j46-72x3CGA-9gcf-fcqm-qh6gCGA-9w87-6hjf-v7rjCGA-c7c8-7cc7-jq22CGA-cgm5-p732-26qvCGA-cprq-pm56-rm89CGA-f2jm-qhqv-vqg3CGA-f53j-px3c-w587CGA-f594-g579-gpf5CGA-fhfv-j2h8-c2c7CGA-fp9p-mfpf-g8jwCGA-fr2x-pg2r-gcxpCGA-fxr2-4pj8-cvv7CGA-g4v3-h549-7fq4CGA-g79w-734h-hp3jCGA-gmx8-9cj8-gr6hCGA-gpmv-p753-qmf4CGA-h4h8-mcj6-366pCGA-h8hf-hg5m-95xmCGA-hc3p-2299-5q9mCGA-hhv9-h298-29vgCGA-hhx9-4hm8-wcxwCGA-hj5j-w638-wh4vCGA-hrjv-v579-wf8qCGA-hwhf-855f-xf54CGA-hwj2-3fxx-f4pqCGA-j5vx-vw9j-6j5wCGA-j5wp-q36m-6q84CGA-j7rm-8wf9-8jvhCGA-jcmj-hcp8-4678CGA-jr4v-cgh8-76h9CGA-jrhp-c3cc-fq99CGA-jxfv-3g6q-rxmrCGA-m46f-f7h3-6j3jCGA-mcrh-hg79-j6x4CGA-mvwm-xjv3-rrjfCGA-p377-27jq-55f7CGA-p42w-qpw8-9hw7CGA-pxj6-m33q-jf65CGA-qcj6-m27q-p596CGA-qmv4-c2m2-c3g3CGA-qmvm-w38j-7hmpCGA-qmx6-gm5j-627vCGA-qp8h-m63v-546vCGA-qv9w-h83m-xc83CGA-qxqm-86r2-5grwCGA-r2xj-qr95-994gCGA-r78r-23j4-4pj2CGA-rgjj-c7cw-w3g7CGA-rmv3-3fqc-6hp4CGA-rmwp-rmwm-cwxxCGA-rwwr-mhp7-m5vhCGA-rwxp-7j8v-8w9gCGA-rx4w-4x22-8crrCGA-v342-vpqr-w89mCGA-v379-xxv7-r62rCGA-v3fq-w34p-6gj4CGA-vcgw-9wp7-99vfCGA-vfrw-gqj6-jxj2CGA-vrvq-fc38-79p5CGA-vww7-ffmg-9w47CGA-w2qm-p446-m9hjCGA-w575-m63j-79wrCGA-w74p-gmx2-8j49CGA-wcvh-36f2-g9gmCGA-whh3-rqfh-pfpjCGA-wm7x-jj92-4326CGA-x39g-3v2v-3q4vCGA-xgc9-fv42-8vg9CGA-xpch-2346-r3hvCGA-576w-v75h-f992CGA-5vpp-v329-f783CGA-25r2-f2j8-w3frCGA-3gww-8jcw-gmxxCGA-4c4p-cpq9-3j26CGA-652g-fjpg-xr9wCGA-67qf-jc5w-4qrfCGA-7pvr-w7cr-m6fgCGA-82m3-mh79-9wvwCGA-fvqp-2qvr-7p84CGA-hh7w-f8w9-q4xwCGA-hvvf-r3p6-xq6wCGA-r46g-9f49-jfm9CGA-r5q2-xccw-2cxjCGA-v4cx-v8h6-pfvfCGA-vq25-8fx4-9q53CGA-w7m3-gg57-hqjcCGA-273f-j73w-6wxmCGA-53x4-cf4c-9mqgCGA-6775-cpch-qqrxCGA-8qm5-x95c-f3gxCGA-r47p-h5fg-x674CGA-prv9-885q-f3xvCGA-mwqh-wcv9-22m9CGA-49jf-wc7r-2v7rCGA-62c2-cxhh-675jCGA-m579-56xp-wrgx
Advisory lineage Upstream: 0 Downstream: 31
Modified
Published: 27 Mar 2023, 00:00
Last modified:24 Feb 2025, 17:05

Vulnerability Summary

Overall Risk (default)
low
13/100
CVSS Score
3.3 LOW
v3.1 (cve.org)
EPSS Score
0.22% LOW
0% probability +0.21%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

27 Mar 2023, 00:00
Published
Vulnerability first disclosed
24 Feb 2025, 17:05
Last Modified
Vulnerability information updated

Description

A flaw was found in the Linux Kernel. The tls_is_tx_ready() incorrectly checks for list emptiness, potentially accessing a type confused entry to the list_head, leaking the last byte of the confused field that overlaps with rec->tx_ready.

CVSS Metrics

  • v3.1LOWScore: 3.3CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

EPSS Trends

Current EPSS score: 0.22% Percentile: 12%

Techniques & Countermeasures

  • CWE-200Exposure of Sensitive Information to an Unauthorized Actor

    The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

  • CWE-843Access of Resource Using Incompatible Type ('Type Confusion')

    The product allocates or initializes a resource such as a pointer, object, or variable using one type, but it later accesses that resource using a type that is incompatible with the original type.

Affected Systems

  • chainguardhyperv-daemons-6.18

    < 0

  • chainguardhyperv-daemons-generic

    < 0

  • chainguardlinux-aws-6.12

    < 6.12.65-r0 | < 0

  • chainguardlinux-aws-6.12-boot-installed

    < 0

  • chainguardlinux-aws-6.12-fips-boot-installed

    < 0

  • chainguardlinux-aws-6.12-headers

    < 0

  • chainguardlinux-aws-6.12-modules

    < 0

  • chainguardlinux-aws-6.18

    < 6.18.10-r0 | < 0

  • chainguardlinux-aws-6.18-boot-installed

    < 0

  • chainguardlinux-aws-6.18-fips-boot-installed

    < 0

  • chainguardlinux-aws-6.18-headers

    < 0

  • chainguardlinux-aws-6.18-modules

    < 0

  • chainguardlinux-aws-generic

    < 6.18.5-r0 | < 0

  • chainguardlinux-aws-generic-boot-installed

    < 0

  • chainguardlinux-aws-generic-fips-boot-installed

    < 0

  • chainguardlinux-aws-generic-headers

    < 0

  • chainguardlinux-aws-generic-modules

    < 0

  • chainguardlinux-azure-6.12

    < 6.12.65-r1 | < 0

  • chainguardlinux-azure-6.18

    < 0

  • chainguardlinux-azure-6.18-boot-installed

    < 0

  • chainguardlinux-azure-6.18-fips-boot-installed

    < 0

  • chainguardlinux-azure-6.18-headers

    < 0

  • chainguardlinux-azure-6.18-modules

    < 0

  • chainguardlinux-azure-generic

    < 6.18.5-r0 | < 0

  • chainguardlinux-azure-generic-boot-installed

    < 0

  • chainguardlinux-azure-generic-fips-boot-installed

    < 0

  • chainguardlinux-azure-generic-headers

    < 0

  • chainguardlinux-azure-generic-modules

    < 0

  • chainguardlinux-desktop-6.18

    all

  • chainguardlinux-desktop-6.18-bootc

    all

  • chainguardlinux-desktop-6.18-bootc-boot-installed

    all

  • chainguardlinux-desktop-6.18-headers

    all

  • chainguardlinux-desktop-6.18-modules

    all

  • chainguardlinux-desktop-7.2

    all

  • chainguardlinux-desktop-7.2-bootc

    all

  • chainguardlinux-desktop-7.2-bootc-boot-installed

    all

  • chainguardlinux-desktop-7.2-headers

    all

  • chainguardlinux-desktop-7.2-modules

    all

  • chainguardlinux-firecracker-6.18

    all

  • chainguardlinux-gcp-6.12

    < 6.12.65-r0 | < 0

  • chainguardlinux-gcp-6.18

    < 0 | < 6.18.10-r0

  • chainguardlinux-gcp-6.18-boot-installed

    < 0

  • chainguardlinux-gcp-6.18-fips-boot-installed

    < 0

  • chainguardlinux-gcp-6.18-headers

    < 0

  • chainguardlinux-gcp-6.18-modules

    < 0

  • chainguardlinux-gcp-generic

    < 6.18.5-r0 | < 0

  • chainguardlinux-gcp-generic-boot-installed

    < 0

  • chainguardlinux-gcp-generic-fips-boot-installed

    < 0

  • chainguardlinux-gcp-generic-headers

    < 0

  • chainguardlinux-gcp-generic-modules

    < 0

Showing first 50 affected entries in server-rendered view.

References (21)