icon

We found results for “

CVE-2023-6546

Good to know:

icon

Date: December 21, 2023

A race condition was found in the GSM 0710 tty multiplexor in the Linux kernel. This issue occurs when two threads execute the GSMIOC_SETCONF ioctl on the same tty file descriptor with the gsm line discipline enabled, and can lead to a use-after-free problem on a struct gsm_dlci while restarting the gsm mux. This could allow a local unprivileged user to escalate their privileges on the system.

Language: C

Severity Score

Related Resources (29)

Severity Score

Weakness Type (CWE)

Race Conditions

CWE-362

Use After Free

CWE-416

Top Fix

icon

Upgrade Version

Upgrade to version v5.10.192,v5.15.128,v6.1.47,v6.4.12

Learn More

CVSS v3.1

Base Score:
Attack Vector (AV): LOCAL
Attack Complexity (AC): HIGH
Privileges Required (PR): LOW
User Interaction (UI): NONE
Scope (S): UNCHANGED
Confidentiality (C): HIGH
Integrity (I): HIGH
Availability (A): HIGH

Do you need more information?

Contact Us