CVE-2023-39191
published 2023-10-04CVE-2023-39191: An improper input validation flaw was found in the eBPF subsystem in the Linux kernel. The issue occurs due to a lack of proper validation of dynamic pointers…
PriorityP344high8.2CVSS 3.1
AVLACLPRHUINSCCHIHAH
EPSS
0.52%
40.8th percentile
An improper input validation flaw was found in the eBPF subsystem in the Linux kernel. The issue occurs due to a lack of proper validation of dynamic pointers within user-supplied eBPF programs prior to executing them. This may allow an attacker with CAP_BPF privileges to escalate privileges and execute arbitrary code in the context of the kernel.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.3.7-1 (forky) | linux 6.3.7-1 (forky) |
| fedoraproject | fedora | — | — |
| chrome_chrome | — | — | |
| linux | linux_kernel | >= 0 < 6.3.7-1 | 6.3.7-1 |
| linux | linux_kernel | >= 0 < 6.3.7-1 | 6.3.7-1 |
| linux | linux_kernel | >= 5.19 < 6.3 | 6.3 |
| msrc | cbl2_kernel_5.15.137.1-1_on_cbl_mariner_2.0 | — | — |
| redhat | enterprise_linux | — | — |
CVSS provenance
nvdv3.18.2HIGHCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
osv8.2HIGH
vendor_debian8.2LOW
vendor_msrc8.2HIGH
vendor_redhat8.2HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Chrome
Stable Channel Update for ChromeOS / ChromeOS Flex: CVE-2023-6511
vendor_chrome·2024-01-08·CVSS 8.2
CVE-2023-6511 [LOW] Stable Channel Update for ChromeOS / ChromeOS Flex: CVE-2023-6511
Stable Channel Update for ChromeOS / ChromeOS Flex
CVE-2023-6511: Inappropriate implementation in Autofill. Reported by Ahmed ElMasry on 2023-09-04 Other 3rd Party Security Fixes Included: [NA] Medium Fixes CVE-2023-39191 in Linux Kernel Please Note:
Users who are pinned to a specific release of ChromeOS will not receive these security fixes or any other security fixes
Severity: low
Microsoft
Kernel: ebpf: insufficient stack type checks in dynptr
vendor_msrc·2023-10-10·CVSS 8.2
CVE-2023-39191 [HIGH] CWE-20 Kernel: ebpf: insufficient stack type checks in dynptr
Kernel: ebpf: insufficient stack type checks in dynptr
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect this.
Mariner: Mariner
redhat: redhat
Customer Action Required: Yes
Remediation: CBL-Mariner Releases
Reference: https://lear
Red Hat
kernel: eBPF: insufficient stack type checks in dynptr
vendor_redhat·2023-09-29·CVSS 8.2
CVE-2023-39191 [HIGH] CWE-20 kernel: eBPF: insufficient stack type checks in dynptr
kernel: eBPF: insufficient stack type checks in dynptr
An improper input validation flaw was found in the eBPF subsystem in the Linux kernel. The issue occurs due to a lack of proper validation of dynamic pointers within user-supplied eBPF programs prior to executing them. This may allow an attacker with CAP_BPF privileges to escalate privileges and execute arbitrary code in the context of the kernel.
An improper input validation flaw was found in the eBPF subsystem in the Linux kernel. The issue occurs due to a lack of proper validation of dynamic pointers within user-supplied eBPF programs prior to executing them. This may allow an attacker with CAP_BPF privileges to escalate privileges and execute arbitrary code in the context of the kernel.
Statement: Dynamic pointers were introduce
Debian
CVE-2023-39191: linux - An improper input validation flaw was found in the eBPF subsystem in the Linux k...
vendor_debian·2023·CVSS 8.2
CVE-2023-39191 [HIGH] CVE-2023-39191: linux - An improper input validation flaw was found in the eBPF subsystem in the Linux k...
An improper input validation flaw was found in the eBPF subsystem in the Linux kernel. The issue occurs due to a lack of proper validation of dynamic pointers within user-supplied eBPF programs prior to executing them. This may allow an attacker with CAP_BPF privileges to escalate privileges and execute arbitrary code in the context of the kernel.
Scope: local
bookworm: open
bullseye: resolved
forky: resolved (fixed in 6.3.7-1)
sid: resolved (fixed in 6.3.7-1)
trixie: resolved (fixed in 6.3.7-1)
OSV
CVE-2023-39191: An improper input validation flaw was found in the eBPF subsystem in the Linux kernel
osv·2023-10-04·CVSS 8.2
CVE-2023-39191 [HIGH] CVE-2023-39191: An improper input validation flaw was found in the eBPF subsystem in the Linux kernel
An improper input validation flaw was found in the eBPF subsystem in the Linux kernel. The issue occurs due to a lack of proper validation of dynamic pointers within user-supplied eBPF programs prior to executing them. This may allow an attacker with CAP_BPF privileges to escalate privileges and execute arbitrary code in the context of the kernel.
GHSA
GHSA-gxg7-pxwf-9r28: An improper input validation flaw was found in the eBPF subsystem in the Linux kernel
ghsa_unreviewed·2023-10-04
CVE-2023-39191 [HIGH] CWE-20 GHSA-gxg7-pxwf-9r28: An improper input validation flaw was found in the eBPF subsystem in the Linux kernel
An improper input validation flaw was found in the eBPF subsystem in the Linux kernel. The issue occurs due to a lack of proper validation of dynamic pointers within user-supplied eBPF programs prior to executing them. This may allow an attacker with CAP_BPF privileges to escalate privileges and execute arbitrary code in the context of the kernel.
No detection rules found.
No public exploits indexed.
https://access.redhat.com/errata/RHSA-2023:6583https://access.redhat.com/errata/RHSA-2024:0381https://access.redhat.com/errata/RHSA-2024:0439https://access.redhat.com/errata/RHSA-2024:0448https://access.redhat.com/security/cve/CVE-2023-39191https://bugzilla.redhat.com/show_bug.cgi?id=2226783https://www.zerodayinitiative.com/advisories/ZDI-CAN-19399/https://access.redhat.com/errata/RHSA-2023:6583https://access.redhat.com/errata/RHSA-2024:0381https://access.redhat.com/errata/RHSA-2024:0439https://access.redhat.com/errata/RHSA-2024:0448https://access.redhat.com/security/cve/CVE-2023-39191https://bugzilla.redhat.com/show_bug.cgi?id=2226783https://www.zerodayinitiative.com/advisories/ZDI-CAN-19399/
2023-10-04
Published