CVE-2023-6200
published 2024-01-28CVE-2023-6200: A race condition was found in the Linux Kernel. Under certain conditions, an unauthenticated attacker from an adjacent network could send an ICMPv6 router…
PriorityP349high7.5CVSS 3.1
AVAACHPRNUINSUCHIHAH
EPSS
2.17%
80.4th percentile
A race condition was found in the Linux Kernel. Under certain conditions, an unauthenticated attacker from an adjacent network could send an ICMPv6 router advertisement packet, causing arbitrary code execution.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.6.9-1 (forky) | linux 6.6.9-1 (forky) |
| imagemagick | imagemagick | >= 0 < 8:6.9.10.23+dfsg-2.1ubuntu11.11 | 8:6.9.10.23+dfsg-2.1ubuntu11.11 |
| linux | linux_kernel | < 6.7 | 6.7 |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 6.6.9-1 | 6.6.9-1 |
| linux | linux_kernel | >= 0 < 6.6.9-1 | 6.6.9-1 |
| msrc | azl3_kernel_6.6.35.1-4_on_azure_linux_3.0 | — | — |
| msrc | azl3_kernel_6.6.92.2-1_on_azure_linux_3.0 | — | — |
| msrc | cbl2_kernel_5.15.153.1-1_on_cbl_mariner_2.0 | — | — |
| msrc | cbl2_kernel_5.15.180.1-1_on_cbl_mariner_2.0 | — | — |
| msrc | cbl_mariner_2.0_arm | — | — |
| msrc | cbl_mariner_2.0_x64 | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
osv7.5HIGH
vendor_debian7.5LOW
vendor_msrc7.5HIGH
vendor_redhat7.5HIGH
vendor_cisco6.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
imagemagick regression
osv·2025-04-16·CVSS 5.5
CVE-2023-34151 imagemagick regression
imagemagick regression
USN-6200-2 fixed a vulnerability in ImageMagick. It was discovered that the
fix for CVE-2023-34151 was incomplete. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
It was discovered that ImageMagick incorrectly handled memory under
certain circumstances. If a user were tricked into opening a specially
crafted image file, an attacker could possibly exploit this issue to
cause a denial of service or other unspecified impact. (CVE-2023-34151)
OSV
CVE-2023-6200: A race condition was found in the Linux Kernel
osv·2024-01-28·CVSS 7.5
CVE-2023-6200 [HIGH] CVE-2023-6200: A race condition was found in the Linux Kernel
A race condition was found in the Linux Kernel. Under certain conditions, an unauthenticated attacker from an adjacent network could send an ICMPv6 router advertisement packet, causing arbitrary code execution.
GHSA
GHSA-ghww-f45r-4r4w: A race condition was found in the Linux Kernel
ghsa_unreviewed·2024-01-28
CVE-2023-6200 [HIGH] CWE-362 GHSA-ghww-f45r-4r4w: A race condition was found in the Linux Kernel
A race condition was found in the Linux Kernel. Under certain conditions, an unauthenticated attacker from an adjacent network could send an ICMPv6 router advertisement packet, causing arbitrary code execution.
Microsoft
Kernel: icmpv6 router advertisement packets aka linux tcp/ip remote code execution vulnerability
vendor_msrc·2024-01-09·CVSS 7.5
CVE-2023-6200 [HIGH] CWE-362 Kernel: icmpv6 router advertisement packets aka linux tcp/ip remote code execution vulnerability
Kernel: icmpv6 router advertisement packets aka linux tcp/ip remote code execution vulnerability
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect this.
Mariner: Mariner
redhat: redhat
Customer Action Required: Yes
Remediation: CBL
Red Hat
kernel: ICMPv6 Router Advertisement packets, aka Linux TCP/IP Remote Code Execution Vulnerability
vendor_redhat·2023-12-21·CVSS 7.5
CVE-2023-6200 [HIGH] CWE-362 kernel: ICMPv6 Router Advertisement packets, aka Linux TCP/IP Remote Code Execution Vulnerability
kernel: ICMPv6 Router Advertisement packets, aka Linux TCP/IP Remote Code Execution Vulnerability
A race condition was found in the Linux Kernel. Under certain conditions, an unauthenticated attacker from an adjacent network could send an ICMPv6 router advertisement packet, causing arbitrary code execution.
A race condition was found in the Linux Kernel. Under certain conditions, an unauthenticated attacker from an adjacent network could send an ICMPv6 router advertisement packet, causing arbitrary code execution.
Statement: To trigger this issue, the attacker must be on the local network, IPV6, and the parameter net.ipv6.conf must be enabled.[NIC].accept_ra enabled. By default, net.ipv6.conf.[NIC].accept_ra is disabled for Red Hat Enterprise Linux. In the default configuration, only lo
Cisco
Cisco Firepower 4100 Series, Firepower 9300 Security Appliances, and UCS Fabric Interconnects Command Injection Vulnerability
vendor_cisco·2023-02-22·CVSS 6.0
CVE-2023-20015 [MEDIUM] CWE-78 Cisco Firepower 4100 Series, Firepower 9300 Security Appliances, and UCS Fabric Interconnects Command Injection Vulnerability
Cisco Firepower 4100 Series, Firepower 9300 Security Appliances, and UCS Fabric Interconnects Command Injection Vulnerability
A vulnerability in the CLI of Cisco Firepower 4100 Series, Cisco Firepower 9300 Security Appliances, and Cisco UCS 6200, 6300, 6400, and 6500 Series Fabric Interconnects could allow an authenticated, local attacker to inject unauthorized commands.
This vulnerability is due to insufficient input validation of commands supplied by the user. An attacker could exploit this vulnerability by authenticating to a device and submitting crafted input to the affected command. A successful exploit could allow the attacker to execute unauthorized commands within the CLI. An attacker with Administrator privileges could also execute arbitrary commands on the underlying operating
Debian
CVE-2023-6200: linux - A race condition was found in the Linux Kernel. Under certain conditions, an una...
vendor_debian·2023·CVSS 7.5
CVE-2023-6200 [HIGH] CVE-2023-6200: linux - A race condition was found in the Linux Kernel. Under certain conditions, an una...
A race condition was found in the Linux Kernel. Under certain conditions, an unauthenticated attacker from an adjacent network could send an ICMPv6 router advertisement packet, causing arbitrary code execution.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved (fixed in 6.6.9-1)
sid: resolved (fixed in 6.6.9-1)
trixie: resolved (fixed in 6.6.9-1)
Cisco
Cisco Firepower 4100 Series, Firepower 9300 Security Appliances, and UCS Fabric Interconnects Command Injection Vulnerability
vendor_cisco·CVSS 3.1
CVE-2023-20015 Cisco Firepower 4100 Series, Firepower 9300 Security Appliances, and UCS Fabric Interconnects Command Injection Vulnerability
CVE-2023-20015: Cisco Firepower 4100 Series, Firepower 9300 Security Appliances, and UCS Fabric Interconnects Command Injection Vulnerability
A vulnerability in the CLI of Cisco Firepower 4100 Series, Cisco Firepower 9300 Security Appliances, and Cisco UCS 6200, 6300, 6400, and 6500 Series Fabric Interconnects could allow an authenticated, local attacker to inject unauthorized commands. This vulnerability is due to insufficient input validation of commands supplied by the user. An attacker could exploit this vulnerability by authenticating to a device and submitting crafted input to the affected command. A successful exploit could allow the attacker to execute unauthorized commands within the CLI. An attacker with Administrator privileges could also execute arbitrary commands on the underl
No detection rules found.
No public exploits indexed.
https://access.redhat.com/security/cve/CVE-2023-6200https://bugzilla.redhat.com/show_bug.cgi?id=2250377https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=dade3f6a1e4ehttps://access.redhat.com/security/cve/CVE-2023-6200https://bugzilla.redhat.com/show_bug.cgi?id=2250377https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=dade3f6a1e4e
2024-01-28
Published