CVE 2023-0458
A speculative pointer dereference problem exists in the Linux Kernel on the do_prlimit() function. The resource argument value is controlled and is used in pointer arithmetic for the 'rlim' variable and can be used to leak the contents. We recommend upgrading past version 6.1.8 or commit 739790605705ddc
Related bugs and status
CVE-2023-0458 (Candidate) is related to these bugs:
Bug #2034204: jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker
Summary | In | Importance | Status | |||
---|---|---|---|---|---|---|
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow automated-testing | Medium | Invalid | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow boot-testing | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow certification-testing | Medium | Invalid | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow kernel-signoff | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow new-review | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow prepare-package | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow prepare-package-generate | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow prepare-package-lrg | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow prepare-package-lrm | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow prepare-package-lrs | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow prepare-package-meta | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow prepare-package-signed | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow promote-signing-to-proposed | Medium | Invalid | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow promote-to-proposed | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow promote-to-security | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow promote-to-updates | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow regression-testing | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow security-signoff | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow sru-review | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | Kernel SRU Workflow verification-testing | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | linux-oem-6.0 (Ubuntu Jammy) | Medium | Fix Released | ||
2034204 | jammy/linux-oem-6.0: 6.0.0-1021.21 -proposed tracker | canonical-signing-jobs task00 | Medium | Fix Released |
See the
CVE page on Mitre.org
for more details.