CVE-2023-3268

Summary

An out of bounds (OOB) memory access flaw was found in the Linux kernel in relay_file_read_start_pos in kernel/relay.c in the relayfs. This flaw could allow a local attacker to crash the system or leak kernel internal information.

Affected Software

VendorProductVersion RangeStatus
Linuxkernel2.6.22 < 4.19.283affected
Linuxkernel4.20 < 5.4.243affected
Linuxkernel5.5 < 5.10.180affected
Linuxkernel5.11 < 5.15.111affected
Linuxkernel5.16 < 6.1.28affected
Linuxkernel6.2 < 6.2.15affected
Linuxkernel6.3 < 6.3.2affected

Weaknesses

  • CWE-125: CWE-125

ADP Enrichment

CVE Program Container

Additional References

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References