CVE-2023-52801
published 2024-05-21CVE-2023-52801: In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix missing update of domains_itree after splitting iopt_area In…
PriorityP342critical9.1CVSS 3.1
AVNACLPRNUINSUCNIHAH
EPSS
0.92%
56.4th percentile
In the Linux kernel, the following vulnerability has been resolved:
iommufd: Fix missing update of domains_itree after splitting iopt_area
In iopt_area_split(), if the original iopt_area has filled a domain and is
linked to domains_itree, pages_nodes have to be properly
reinserted. Otherwise the domains_itree becomes corrupted and we will UAF.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.6.8-1 (forky) | linux 6.6.8-1 (forky) |
| linux | linux | — | — |
| linux | linux | >= 51fe6141f0f64ae0bbc096a41a07572273e8c0ef < 836db2e7e4565d8218923b3552304a1637e2f28d | 836db2e7e4565d8218923b3552304a1637e2f28d |
| linux | linux | >= 51fe6141f0f64ae0bbc096a41a07572273e8c0ef < fcb32111f01ddf3cbd04644cde1773428e31de6a | fcb32111f01ddf3cbd04644cde1773428e31de6a |
| linux | linux | >= 51fe6141f0f64ae0bbc096a41a07572273e8c0ef < e7250ab7ca4998fe026f2149805b03e09dc32498 | e7250ab7ca4998fe026f2149805b03e09dc32498 |
| linux | linux_kernel | >= 0 < 6.6.8-1 | 6.6.8-1 |
| linux | linux_kernel | >= 0 < 6.6.8-1 | 6.6.8-1 |
| linux | linux_kernel | >= 6.2 < 6.5.13 | 6.5.13 |
| linux | linux_kernel | >= 6.6 < 6.6.3 | 6.6.3 |
CVSS provenance
nvdv3.19.1CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
osv9.1CRITICAL
vendor_debian9.1LOW
vendor_redhat9.1CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: iommufd: Fix missing update of domains_itree after splitting iopt_area
vendor_redhat·2024-05-21·CVSS 9.1
CVE-2023-52801 [CRITICAL] CWE-99 kernel: iommufd: Fix missing update of domains_itree after splitting iopt_area
kernel: iommufd: Fix missing update of domains_itree after splitting iopt_area
In the Linux kernel, the following vulnerability has been resolved:
iommufd: Fix missing update of domains_itree after splitting iopt_area
In iopt_area_split(), if the original iopt_area has filled a domain and is
linked to domains_itree, pages_nodes have to be properly
reinserted. Otherwise the domains_itree becomes corrupted and we will UAF.
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 9) - Affected
Debian
CVE-2023-52801: linux - In the Linux kernel, the following vulnerability has been resolved: iommufd: Fi...
vendor_debian·2023·CVSS 9.1
CVE-2023-52801 [CRITICAL] CVE-2023-52801: linux - In the Linux kernel, the following vulnerability has been resolved: iommufd: Fi...
In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix missing update of domains_itree after splitting iopt_area In iopt_area_split(), if the original iopt_area has filled a domain and is linked to domains_itree, pages_nodes have to be properly reinserted. Otherwise the domains_itree becomes corrupted and we will UAF.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved (fixed in 6.6.8-1)
sid: resolved (fixed in 6.6.8-1)
trixie: resolved (fixed in 6.6.8-1)
GHSA
GHSA-p886-4435-7m79: In the Linux kernel, the following vulnerability has been resolved:
iommufd: Fix missing update of domains_itree after splitting iopt_area
In iopt_a
ghsa_unreviewed·2024-05-21
CVE-2023-52801 [CRITICAL] CWE-284 GHSA-p886-4435-7m79: In the Linux kernel, the following vulnerability has been resolved:
iommufd: Fix missing update of domains_itree after splitting iopt_area
In iopt_a
In the Linux kernel, the following vulnerability has been resolved:
iommufd: Fix missing update of domains_itree after splitting iopt_area
In iopt_area_split(), if the original iopt_area has filled a domain and is
linked to domains_itree, pages_nodes have to be properly
reinserted. Otherwise the domains_itree becomes corrupted and we will UAF.
OSV
CVE-2023-52801: In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix missing update of domains_itree after splitting iopt_area In iopt_are
osv·2024-05-21·CVSS 9.1
CVE-2023-52801 [CRITICAL] CVE-2023-52801: In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix missing update of domains_itree after splitting iopt_area In iopt_are
In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix missing update of domains_itree after splitting iopt_area In iopt_area_split(), if the original iopt_area has filled a domain and is linked to domains_itree, pages_nodes have to be properly reinserted. Otherwise the domains_itree becomes corrupted and we will UAF.
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/836db2e7e4565d8218923b3552304a1637e2f28dhttps://git.kernel.org/stable/c/e7250ab7ca4998fe026f2149805b03e09dc32498https://git.kernel.org/stable/c/fcb32111f01ddf3cbd04644cde1773428e31de6ahttps://git.kernel.org/stable/c/836db2e7e4565d8218923b3552304a1637e2f28dhttps://git.kernel.org/stable/c/e7250ab7ca4998fe026f2149805b03e09dc32498https://git.kernel.org/stable/c/fcb32111f01ddf3cbd04644cde1773428e31de6a
2024-05-21
Published