• CVE-2023-1076

发布时间: 2023年3月17日

修改时间: 2024年10月31日

概要

A flaw found in the Linux Kernel. The tun/tap sockets have their socket UID hardcoded to 0 due to a type confusion in their initialization function.While it will be often correct, as tuntap devices require CAP_NET_ADMIN, it may not always be the case, e.g., a non-root user only having that capability.This would make tun/tap sockets being incorrectly treated in filtering/routing decisions, possibly bypassing network filters.References:https://git.kernel.org/pub/scm/linux/kernel/git/next/linux-next.git/commit/?id=66b2c338adce580dfce2199591e65e2bab889cffhttps://git.kernel.org/pub/scm/linux/kernel/git/next/linux-next.git/commit/?id=a096ccca6e503a5c575717ff8a36ace27510ab0a

CVSS v3 指标

NVD openEuler
Confidentiality None High
Attack Vector Local Local
CVSS评分 5.5 4.7
Attack Complexity Low High
Privileges Required Low Low
Scope Unchanged Unchanged
Integrity High None
User Interaction None None
Availability None None

安全公告

公告名 概要 发布时间
KylinSec-SA-2023-2116 kernel security update 2023年3月17日
KylinSec-SA-2023-2118 kernel security update 2023年3月17日

影响产品

产品 状态
KY3.4-4A kernel Fixed
KY3.4-5A kernel Fixed
KY3.5.1 kernel Fixed
KY3.5.2 kernel Fixed