• CVE-2023-39198

发布时间: 2023年11月17日

修改时间: 2024年10月31日

概要

A race condition was found in the QXL driver in the Linux kernel. The qxl_mode_dumb_create() function dereferences the qobj returned by the qxl_gem_object_create_with_handle(), but the handle is the only one holding a reference to it. This flaw allows an attacker to guess the returned handle value and trigger a use-after-free issue, potentially leading to a denial of service or privilege escalation.

CVSS v3 指标

NVD openEuler
Confidentiality High High
Attack Vector Local Local
CVSS评分 6.4 7.5
Attack Complexity High High
Privileges Required High High
Scope Unchanged Changed
Integrity High High
User Interaction None None
Availability High High

安全公告

公告名 概要 发布时间
KylinSec-SA-2023-2314 kernel security update 2023年11月17日
KylinSec-SA-2023-2316 kernel security update 2023年11月17日

影响产品

产品 状态
KY3.4-4A kernel Fixed
KY3.5.2 kernel Fixed
KY3.4-5A kernel Fixed
KY3.5.1 kernel Fixed