CVE-2023-3106
published 2023-07-12CVE-2023-3106: A NULL pointer dereference vulnerability was found in netlink_dump. This issue can occur when the Netlink socket receives the message(sendmsg) for the…
PriorityP335high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.29%
21.1th percentile
A NULL pointer dereference vulnerability was found in netlink_dump. This issue can occur when the Netlink socket receives the message(sendmsg) for the XFRM_MSG_GETSA, XFRM_MSG_GETPOLICY type message, and the DUMP flag is set and can cause a denial of service or possibly another unspecified impact. Due to the nature of the flaw, privilege escalation cannot be fully ruled out, although it is unlikely.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 4.8.5-1 (bookworm) | linux 4.8.5-1 (bookworm) |
| fedoraproject | fedora | — | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 4.8.5-1 | 4.8.5-1 |
| linux | linux_kernel | >= 0 < 4.8.5-1 | 4.8.5-1 |
| linux | linux_kernel | >= 0 < 4.8.5-1 | 4.8.5-1 |
| linux | linux_kernel | >= 0 < 4.8.5-1 | 4.8.5-1 |
| linux | linux_kernel | >= 3.15 < 3.16.39 | 3.16.39 |
| linux | linux_kernel | >= 3.17 < 4.4.223 | 4.4.223 |
| linux | linux_kernel | >= 4.5 < 4.7.10 | 4.7.10 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian6.6MEDIUM
vendor_redhat6.6MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2023-3106: linux - A NULL pointer dereference vulnerability was found in netlink_dump. This issue c...
vendor_debian·2023·CVSS 6.6
CVE-2023-3106 [MEDIUM] CVE-2023-3106: linux - A NULL pointer dereference vulnerability was found in netlink_dump. This issue c...
A NULL pointer dereference vulnerability was found in netlink_dump. This issue can occur when the Netlink socket receives the message(sendmsg) for the XFRM_MSG_GETSA, XFRM_MSG_GETPOLICY type message, and the DUMP flag is set and can cause a denial of service or possibly another unspecified impact. Due to the nature of the flaw, privilege escalation cannot be fully ruled out, although it is unlikely.
Scope: local
bookworm: resolved (fixed in 4.8.5-1)
bullseye: resolved (fixed in 4.8.5-1)
forky: resolved (fixed in 4.8.5-1)
sid: resolved (fixed in 4.8.5-1)
trixie: resolved (fixed in 4.8.5-1)
Red Hat
kernel: Netlink socket crash (null pointer deref) in netlink_dump function
vendor_redhat·2016-07-18·CVSS 6.6
CVE-2023-3106 [MEDIUM] CWE-476 kernel: Netlink socket crash (null pointer deref) in netlink_dump function
kernel: Netlink socket crash (null pointer deref) in netlink_dump function
A NULL pointer dereference vulnerability was found in netlink_dump. This issue can occur when the Netlink socket receives the message(sendmsg) for the XFRM_MSG_GETSA, XFRM_MSG_GETPOLICY type message, and the DUMP flag is set and can cause a denial of service or possibly another unspecified impact. Due to the nature of the flaw, privilege escalation cannot be fully ruled out, although it is unlikely.
A NULL pointer dereference vulnerability was found in netlink_dump. This issue can occur when the Netlink socket receives the message(sendmsg) for the XFRM_MSG_GETSA, XFRM_MSG_GETPOLICY type message, and the DUMP flag is set and can cause a denial of service or possibly another unspecified impact. Due to the nature of
OSV
CVE-2023-3106: A NULL pointer dereference vulnerability was found in netlink_dump
osv·2023-07-12·CVSS 7.8
CVE-2023-3106 [HIGH] CVE-2023-3106: A NULL pointer dereference vulnerability was found in netlink_dump
A NULL pointer dereference vulnerability was found in netlink_dump. This issue can occur when the Netlink socket receives the message(sendmsg) for the XFRM_MSG_GETSA, XFRM_MSG_GETPOLICY type message, and the DUMP flag is set and can cause a denial of service or possibly another unspecified impact. Due to the nature of the flaw, privilege escalation cannot be fully ruled out, although it is unlikely.
GHSA
GHSA-f28c-5rx3-m73f: A NULL pointer dereference vulnerability was found in netlink_dump
ghsa_unreviewed·2023-07-12
CVE-2023-3106 [HIGH] CWE-476 GHSA-f28c-5rx3-m73f: A NULL pointer dereference vulnerability was found in netlink_dump
A NULL pointer dereference vulnerability was found in netlink_dump. This issue can occur when the Netlink socket receives the message(sendmsg) for the XFRM_MSG_GETSA, XFRM_MSG_GETPOLICY type message, and the DUMP flag is set and can cause a denial of service or possibly another unspecified impact. Due to the nature of the flaw, privilege escalation cannot be fully ruled out, although it is unlikely.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://access.redhat.com/security/cve/CVE-2023-3106https://bugzilla.redhat.com/show_bug.cgi?id=2221501https://github.com/torvalds/linux/commit/1ba5bf993c6a3142e18e68ea6452b347f9cb5635https://access.redhat.com/security/cve/CVE-2023-3106https://bugzilla.redhat.com/show_bug.cgi?id=2221501https://github.com/torvalds/linux/commit/1ba5bf993c6a3142e18e68ea6452b347f9cb5635
2023-07-12
Published