cbcvebase.
CVE-2023-1281
published 2023-03-22

CVE-2023-1281: Use After Free vulnerability in Linux kernel traffic control index filter (tcindex) allows Privilege Escalation. The imperfect hash area can be updated while…

PriorityP342high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.31%
22.8th percentile
Use After Free vulnerability in Linux kernel traffic control index filter (tcindex) allows Privilege Escalation. The imperfect hash area can be updated while packets are traversing, which will cause a use-after-free when 'tcf_exts_exec()' is called with the destroyed tcf_ext. A local attacker user can use this vulnerability to elevate its privileges to root. This issue affects Linux Kernel: from 4.14 before git commit ee059170b1f7e94e55fa6cadee544e176a6e59c2.

Affected

24 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.1.15-1 (bookworm)linux 6.1.15-1 (bookworm)
googlechrome_chrome
linuxlinux_kernel
linuxlinux_kernel>= 0 < 5.10.178-15.10.178-1
linuxlinux_kernel>= 0 < 6.1.15-16.1.15-1
linuxlinux_kernel>= 0 < 6.1.15-16.1.15-1
linuxlinux_kernel>= 0 < 6.1.15-16.1.15-1
linuxlinux_kernel>= 0 < 4.15.0-209.2204.15.0-209.220
linuxlinux_kernel>= 0 < 5.4.0-147.1645.4.0-147.164
linuxlinux_kernel>= 0 < 5.15.0-70.775.15.0-70.77
linuxlinux_kernel>= 0 < 4.15.0-209.2204.15.0-209.220
linuxlinux_kernel>= 0 < 5.4.0-147.1645.4.0-147.164
linuxlinux_kernel>= 0 < 5.15.0-70.775.15.0-70.77
linuxlinux_kernel>= 4.14 < 5.10.1695.10.169
linuxlinux_kernel4.14 – 6.2
linuxlinux_kernel>= 5.11 < 5.15.955.15.95
linuxlinux_kernel>= 5.16 < 6.1.136.1.13
msrccbl2_kernel_5.15.102.1-3_on_cbl_mariner_2.0
msrccbl_mariner_1.0_arm
msrccbl_mariner_1.0_x64
msrccbl_mariner_2.0_arm
msrccbl_mariner_2.0_x64
msrccm1_kernel_5.10.174.1-1_on_cbl_mariner_1.0
paloaltopan-os

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_redhat8.8HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_ubuntu7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.