CVE-2023-6560
published 2023-12-09CVE-2023-6560: An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functionality in the Linux kernel. This issue could allow a local user to crash the…
PriorityP421medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.28%
20.4th percentile
An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functionality in the Linux kernel. This issue could allow a local user to crash the system.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.6.8-1 (forky) | linux 6.6.8-1 (forky) |
| linux | linux_kernel | <= 6.6 | — |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 6.6.8-1 | 6.6.8-1 |
| linux | linux_kernel | >= 0 < 6.6.8-1 | 6.6.8-1 |
| msrc | cbl2_kernel_5.15.153.1-1_on_cbl_mariner_2.0 | — | — |
| openbsd | openssh | >= 0 < 1:7.2p2-4ubuntu2.10+esm5 | 1:7.2p2-4ubuntu2.10+esm5 |
| openbsd | openssh | >= 0 < 1:7.6p1-4ubuntu0.7+esm3 | 1:7.6p1-4ubuntu0.7+esm3 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.9MEDIUM
vendor_debian5.5LOW
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Microsoft
Kernel: io_uring out of boundary memory access in __io_uaddr_map()
vendor_msrc·2023-12-12·CVSS 5.5
CVE-2023-6560 [MEDIUM] CWE-119 Kernel: io_uring out of boundary memory access in __io_uaddr_map()
Kernel: io_uring out of boundary memory access in __io_uaddr_map()
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect this.
Mariner: Mariner
redhat: redhat
Customer Action Required: Yes
Remediation: CBL-Mariner Releases
Reference:
Red Hat
kernel: io_uring out of boundary memory access in __io_uaddr_map()
vendor_redhat·2023-11-30·CVSS 5.5
CVE-2023-6560 [MEDIUM] CWE-823 kernel: io_uring out of boundary memory access in __io_uaddr_map()
kernel: io_uring out of boundary memory access in __io_uaddr_map()
An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functionality in the Linux kernel. This issue could allow a local user to crash the system.
An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functionality in the Linux kernel. This issue could allow a local user to crash the system.
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 6) - Not affected
Package: kernel (Red Hat Enterprise Linux 7) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 7) - Not affected
Package: kernel (Red Hat Enterprise Linux 8) - Not affected
Package: kernel-rt (Red Hat Enterprise Linux 8) - Not affected
Package: kernel (Red Ha
Debian
CVE-2023-6560: linux - An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functi...
vendor_debian·2023·CVSS 5.5
CVE-2023-6560 [MEDIUM] CVE-2023-6560: linux - An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functi...
An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functionality in the Linux kernel. This issue could allow a local user to crash the system.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved (fixed in 6.6.8-1)
sid: resolved (fixed in 6.6.8-1)
trixie: resolved (fixed in 6.6.8-1)
OSV
openssh vulnerabilities
osv·2024-01-11·CVSS 5.9
openssh vulnerabilities
openssh vulnerabilities
USN-6560-1 fixed several vulnerabilities in OpenSSH. This update provides
the corresponding update for Ubuntu 16.04 LTS and Ubuntu 18.04 LTS.
Original advisory details:
Fabian Bäumer, Marcus Brinkmann, Jörg Schwenk discovered that the SSH
protocol was vulnerable to a prefix truncation attack. If a remote attacker
was able to intercept SSH communications, extension negotiation messages
could be truncated, possibly leading to certain algorithms and features
being downgraded. This issue is known as the Terrapin attack. This update
adds protocol extensions to mitigate this issue. (CVE-2023-48795)
It was discovered that OpenSSH incorrectly handled user names or host names
with shell metacharacters. An attacker could possibly use this issue to
perform OS command injec
GHSA
GHSA-q2h3-9c64-6vmc: An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functionality in the Linux kernel
ghsa_unreviewed·2023-12-09
CVE-2023-6560 [MEDIUM] CWE-119 GHSA-q2h3-9c64-6vmc: An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functionality in the Linux kernel
An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functionality in the Linux kernel. This issue could allow a local user to crash the system.
OSV
CVE-2023-6560: An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functionality in the Linux kernel
osv·2023-12-09·CVSS 5.5
CVE-2023-6560 [MEDIUM] CVE-2023-6560: An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functionality in the Linux kernel
An out-of-bounds memory access flaw was found in the io_uring SQ/CQ rings functionality in the Linux kernel. This issue could allow a local user to crash the system.
No detection rules found.
No public exploits indexed.
http://packetstormsecurity.com/files/176405/io_uring-__io_uaddr_map-Dangerous-Multi-Page-Handling.htmlhttps://access.redhat.com/security/cve/CVE-2023-6560https://bugzilla.redhat.com/show_bug.cgi?id=2253249https://lists.fedoraproject.org/archives/list/[email protected]/message/AU4NHBDEDLRW33O76Y6LFECEYNQET5GZ/https://lists.fedoraproject.org/archives/list/[email protected]/message/UCQIPFUQXKXRCH5Y4RP3C5NK4IHNBNVK/https://patchwork.kernel.org/project/io-uring/patch/[email protected]/http://packetstormsecurity.com/files/176405/io_uring-__io_uaddr_map-Dangerous-Multi-Page-Handling.htmlhttps://access.redhat.com/security/cve/CVE-2023-6560https://bugzilla.redhat.com/show_bug.cgi?id=2253249https://lists.fedoraproject.org/archives/list/[email protected]/message/AU4NHBDEDLRW33O76Y6LFECEYNQET5GZ/https://lists.fedoraproject.org/archives/list/[email protected]/message/UCQIPFUQXKXRCH5Y4RP3C5NK4IHNBNVK/https://patchwork.kernel.org/project/io-uring/patch/[email protected]/
2023-12-09
Published