CVE-2023-6610 — Out-of-bounds Read in Redhat Enterprise Linux

Severity
7.1HIGHNVD
EPSS
0.0%
top 98.83%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 8
Latest updateJan 9

Description

An out-of-bounds read vulnerability was found in smb2_dump_detail in fs/smb/client/smb2ops.c in the Linux Kernel. This issue could allow a local attacker to crash the system or leak internal kernel information.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:HExploitability: 1.8 | Impact: 5.2

Affected Packages1 packages

â–¶Debianlinux/linux_kernel< 6.1.76-1+2

Also affects: Enterprise Linux 8.0, 9.0

🔴Vulnerability Details

5
OSV
linux-azure vulnerabilities↗2024-11-20
â–¶
Kernel
smb: client: fix potential OOB in smb2_dump_detail()↗2023-12-19
â–¶
GHSA
GHSA-jr4h-682w-x2ph: An out-of-bounds read vulnerability was found in smb2_dump_detail in fs/smb/client/smb2ops↗2023-12-08
â–¶
OSV
CVE-2023-6610: An out-of-bounds read vulnerability was found in smb2_dump_detail in fs/smb/client/smb2ops↗2023-12-08
â–¶
CVEList
Kernel: oob access in smb2_dump_detail↗2023-12-08
â–¶

📋Vendor Advisories

7
Ubuntu
Linux kernel (Azure) vulnerabilities↗2025-01-09
â–¶
Ubuntu
Linux kernel (Azure) vulnerabilities↗2024-11-20
â–¶
Ubuntu
Linux kernel vulnerabilities↗2024-04-16
â–¶
Ubuntu
Linux kernel vulnerabilities↗2024-04-09
â–¶
Ubuntu
Linux kernel (OEM) vulnerabilities↗2024-03-11
â–¶

💬Community

1
Bugzilla
CVE-2023-6610 kernel: OOB Access in smb2_dump_detail↗2023-12-08
â–¶
CVE-2023-6610 — Out-of-bounds Read in Redhat | cvebase