CVE-2023-3772
Aliases:UBUNTU-CVE-2023-3772DEBIAN-CVE-2023-3772CGA-24pg-hc28-583jCGA-2c2v-pm3m-2gh2CGA-2m3h-hrmv-qc8cCGA-2p2q-vw4m-9x64CGA-2qf9-mpqr-55hfCGA-2rfv-gjqw-gphwCGA-2wmg-9www-gvqfCGA-36q9-5p5j-mw7cCGA-3cw6-qx4p-qhqrCGA-3pwg-prjr-v6wmCGA-3r86-w7mx-p889CGA-4h8x-pr8g-jj96CGA-4m45-jv3r-r49mCGA-4qjr-hq8g-q8vhCGA-4wc9-mq85-3hprCGA-567w-q8f3-qgp9CGA-569f-hxf9-gm3qCGA-56wp-j954-4x8cCGA-5c3r-793q-p5xvCGA-5ccv-gj9j-rxr6CGA-5h6f-956q-5222CGA-5rfh-gf5f-rw3xCGA-5rg3-m965-jmfwCGA-5rm2-qx75-h6hqCGA-5v95-65mw-3ww2CGA-6698-j7mm-c9cvCGA-67rm-vvwp-f7w6CGA-6fq7-mj77-6g8jCGA-6xrj-25w7-5xh5CGA-78wq-6qw3-x7hvCGA-7cpr-33fq-rjfgCGA-7vv5-fv8v-8hpwCGA-855q-c8cf-hjxfCGA-8583-v4cq-r65mCGA-886q-5fq5-9xr7CGA-89x8-j7vx-jrq5CGA-8qpq-jgj5-rf5vCGA-98cv-5hfq-4335CGA-9f4p-pfm8-6r52CGA-9pph-vwf6-c3vgCGA-9vjh-77wf-5fv7CGA-9w6q-jxcq-pf9hCGA-9x7h-wx85-96vxCGA-c828-895f-qmrvCGA-c86h-4rjj-x3rxCGA-c99p-fxvq-w2cgCGA-cgqq-hwh8-r34fCGA-chjw-jp96-2wcgCGA-cmgf-v46r-wj58CGA-cmhj-2vjp-f5pqCGA-cp75-xcm8-c2f7CGA-f9rm-6h35-hxq3CGA-ffqx-6vp7-m6c3CGA-fjxf-qpcf-477xCGA-fqgj-f6xq-29jcCGA-fwjw-mxj9-q8vjCGA-g2cw-qqw9-v77rCGA-gcgr-5g79-5v7qCGA-gr6g-6qr5-ffw2CGA-gwfm-mv97-jcg4CGA-h246-fg6r-xmm8CGA-h6w4-wqrj-vqm9CGA-h896-pj7j-9px6CGA-hghf-8qjj-xp76CGA-hrf4-xv45-7rpwCGA-hw57-qjfj-h6cmCGA-j2mw-548q-2w74CGA-j2x2-f875-9f59CGA-j4cx-ffp5-x528CGA-jj4g-4fpc-cg76CGA-jp43-m97h-2358CGA-m48w-h9fm-rgjvCGA-mcqw-958x-4g5jCGA-mghq-624h-7jphCGA-mhg4-v82v-cjxxCGA-mhvv-mq42-c9cfCGA-p5hj-h5vj-3j9xCGA-p84m-579q-g4wqCGA-p8h6-q8r6-pqx4CGA-pg5c-4w3g-27fwCGA-pjvj-rfmw-8g2rCGA-pjwr-5cwj-g6cvCGA-pq2c-h88j-2wc6CGA-prvg-rrj7-v29qCGA-pvxj-v665-4m4mCGA-q3j7-h7mf-xhcwCGA-q45h-3q52-qgp7CGA-q4jr-925q-88j6CGA-q88v-9cg2-h9vrCGA-qfh3-cj6h-r3q2CGA-qh59-m8px-g63fCGA-qm67-99rc-vmqwCGA-qpvh-q2hf-c4f5CGA-qx3v-66c3-72hcCGA-r36p-xq8c-8wcmCGA-r8cw-m2g9-rcw2CGA-rfp9-h25m-8m2fCGA-rjvr-rfwf-6rfhCGA-rmwr-m63f-rvqgCGA-rqxg-g79j-c3rhCGA-rvcp-wgph-9xpjCGA-v4fq-3f55-3f94CGA-vcmx-fmhw-4xwcCGA-vf24-7w6m-r8xmCGA-vqvw-w3qp-fc28CGA-wqgv-rhh8-v22jCGA-wr27-rh8p-4q43CGA-wv3j-42qw-q93gCGA-wwh5-jqg2-rrjmCGA-x3ff-9w27-rwcxCGA-xh5j-f4ch-gcmwCGA-xpqp-4g3p-gh4xCGA-xq2c-42rw-wwp6CGA-xq2q-8rh7-x4r3CGA-xwm8-89v4-hrg5CGA-7498-fpvq-xmv4CGA-w43w-qxrh-hpp8CGA-24w4-9r6p-fg8mCGA-2c65-9j3p-j3m4CGA-6j75-q87v-j7f8CGA-7h34-q6wp-76w5CGA-9hqm-wp3j-4qwmCGA-9m4w-5gj2-pr46CGA-g3cg-4fcx-6frfCGA-gfj2-97fg-vhr9CGA-gfrv-h8qr-f339CGA-h427-m87w-x7pqCGA-j93p-hh3p-j2vwCGA-q2gj-m44q-82hrCGA-vh9v-8p4q-rc6vCGA-x877-94wr-qj8wCGA-j3gj-wg38-gc69CGA-3q77-p9qv-cmq4CGA-63j4-c4p8-r38gCGA-hpwr-4p35-q885CGA-r4r5-wjcw-q2fgCGA-mr8q-j99p-73jwCGA-75wg-mmp2-vppxCGA-88hp-mx7c-6r78CGA-j386-mr93-r5hw
Advisory lineage Upstream: 0 Downstream: 63
Modified
Published: 25 Jul 2023, 15:47
Last modified:07 Nov 2025, 13:03
Vulnerability Summary
Overall Risk (default)
low
22/100 CVSS Score
5.5 MEDIUM
v3.1 (cve.org)
EPSS Score
0.45% LOW
0% probability +0.44%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected
Timeline
25 Jul 2023, 15:47
Published
Vulnerability first disclosed
07 Nov 2025, 13:03
Last Modified
Vulnerability information updated
Description
A flaw was found in the Linux kernel’s IP framework for transforming packets (XFRM subsystem). This issue may allow a malicious user with CAP_NET_ADMIN privileges to directly dereference a NULL pointer in xfrm_update_ae_params(), leading to a possible kernel crash and denial of service.
CVSS Metrics
- v3.1•MEDIUM•Score: 5.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- v3.1•MEDIUM•Score: 4.4CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
EPSS Trends
Current EPSS score: 0.45%• Percentile: 39%
Techniques & Countermeasures
- CWE-476•NULL Pointer Dereference
The product dereferences a pointer that it expects to be valid but is NULL.
Affected Systems
- chainguard•hyperv-daemons-6.18
< 0
- chainguard•hyperv-daemons-generic
< 0
- chainguard•linux-aws-6.12
< 6.12.65-r0 | < 0
- chainguard•linux-aws-6.12-boot-installed
< 0
- chainguard•linux-aws-6.12-fips-boot-installed
< 0
- chainguard•linux-aws-6.12-headers
< 0
- chainguard•linux-aws-6.12-modules
< 0
- chainguard•linux-aws-6.18
< 0 | < 6.18.10-r0
- chainguard•linux-aws-6.18-boot-installed
< 0
- chainguard•linux-aws-6.18-fips-boot-installed
< 0
- chainguard•linux-aws-6.18-headers
< 0
- chainguard•linux-aws-6.18-modules
< 0
- chainguard•linux-aws-generic
< 6.18.5-r0 | < 0
- chainguard•linux-aws-generic-boot-installed
< 0
- chainguard•linux-aws-generic-fips-boot-installed
< 0
- chainguard•linux-aws-generic-headers
< 0
- chainguard•linux-aws-generic-modules
< 0
- chainguard•linux-azure-6.12
< 6.12.65-r1 | < 0
- chainguard•linux-azure-6.18
< 0
- chainguard•linux-azure-6.18-boot-installed
< 0
- chainguard•linux-azure-6.18-fips-boot-installed
< 0
- chainguard•linux-azure-6.18-headers
< 0
- chainguard•linux-azure-6.18-modules
< 0
- chainguard•linux-azure-generic
< 0 | < 6.18.5-r0
- chainguard•linux-azure-generic-boot-installed
< 0
- chainguard•linux-azure-generic-fips-boot-installed
< 0
- chainguard•linux-azure-generic-headers
< 0
- chainguard•linux-azure-generic-modules
< 0
- chainguard•linux-desktop-6.18
all
- chainguard•linux-desktop-6.18-bootc
all
- chainguard•linux-desktop-6.18-bootc-boot-installed
all
- chainguard•linux-desktop-6.18-headers
all
- chainguard•linux-desktop-6.18-modules
all
- chainguard•linux-desktop-7.2
all
- chainguard•linux-desktop-7.2-bootc
all
- chainguard•linux-desktop-7.2-headers
all
- chainguard•linux-desktop-7.2-modules
all
- chainguard•linux-firecracker-6.18
all
- chainguard•linux-gcp-6.12
< 6.12.65-r0 | < 0
- chainguard•linux-gcp-6.18
< 0 | < 6.18.10-r0
- chainguard•linux-gcp-6.18-boot-installed
< 0
- chainguard•linux-gcp-6.18-fips-boot-installed
< 0
- chainguard•linux-gcp-6.18-headers
< 0
- chainguard•linux-gcp-6.18-modules
< 0
- chainguard•linux-gcp-generic
< 0 | < 6.18.5-r0
- chainguard•linux-gcp-generic-boot-installed
< 0
- chainguard•linux-gcp-generic-fips-boot-installed
< 0
- chainguard•linux-gcp-generic-headers
< 0
- chainguard•linux-gcp-generic-modules
< 0
- chainguard•linux-qemu-6.12
< 6.12.71-r0
Showing first 50 affected entries in server-rendered view.
References (32)
- https://access.redhat.com/errata/RHSA-2023:6583
- https://access.redhat.com/errata/RHSA-2023:6901
- https://access.redhat.com/errata/RHSA-2023:7077
- https://access.redhat.com/errata/RHSA-2024:0412
- https://access.redhat.com/errata/RHSA-2024:0575
- https://access.redhat.com/security/cve/CVE-2023-3772
- https://bugzilla.redhat.com/show_bug.cgi?id=2218943
- http://www.openwall.com/lists/oss-security/2023/08/10/1
- http://www.openwall.com/lists/oss-security/2023/08/10/3
- https://lists.debian.org/debian-lts-announce/2023/10/msg00027.html
- https://lists.debian.org/debian-lts-announce/2024/01/msg00004.html
- https://www.debian.org/security/2023/dsa-5492
- https://ubuntu.com/security/CVE-2023-3772
- https://lore.kernel.org/netdev/20230721145103.2714073-1-linma@zju.edu.cn/
- https://www.openwall.com/lists/oss-security/2023/08/10/1
- https://ubuntu.com/security/notices/USN-6415-1
- https://ubuntu.com/security/notices/USN-6439-1
- https://ubuntu.com/security/notices/USN-6440-1
- https://ubuntu.com/security/notices/USN-6440-2
- https://ubuntu.com/security/notices/USN-6439-2
- https://ubuntu.com/security/notices/USN-6440-3
- https://ubuntu.com/security/notices/USN-6462-1
- https://ubuntu.com/security/notices/USN-6464-1
- https://ubuntu.com/security/notices/USN-6465-1
- https://ubuntu.com/security/notices/USN-6466-1
- https://ubuntu.com/security/notices/USN-6465-2
- https://ubuntu.com/security/notices/USN-6462-2
- https://ubuntu.com/security/notices/USN-6465-3
- https://ubuntu.com/security/notices/USN-6516-1
- https://ubuntu.com/security/notices/USN-6520-1
- https://www.cve.org/CVERecord?id=CVE-2023-3772
- https://security-tracker.debian.org/tracker/CVE-2023-3772