do_tls_getsockopt in net/tls/tls_main.c in the Linux kernel through 6.2.6 lacks a lock_sock call, leading to a race condition (with a resultant use-after-free or NULL pointer dereference).
References
Link | Resource |
---|---|
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit?id=49c47cc21b5b7a3d8deb18fc57b0aa2ab1286962 | Mailing List Patch |
https://lists.debian.org/debian-lts-announce/2023/05/msg00005.html | Mailing List Third Party Advisory |
https://security.netapp.com/advisory/ntap-20230427-0006/ | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2023-03-15T00:00:00
Updated: 2023-05-03T00:00:00
Reserved: 2023-03-15T00:00:00
Link: CVE-2023-28466
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-03-16T00:15:11.563
Modified: 2023-11-09T13:57:20.637
Link: CVE-2023-28466
JSON object: View
Redhat Information
No data.
CWE