{"schema_version":"1.7.2","id":"OESA-2023-1448","modified":"2023-07-29T11:05:34Z","published":"2023-07-29T11:05:34Z","upstream":["CVE-2022-45886","CVE-2023-3390","CVE-2023-35001"],"summary":"kernel security update","details":"The Linux Kernel, the operating system core itself.\n\nSecurity Fix(es):\n\nAn issue was discovered in the Linux kernel through 6.0.9. drivers/media/dvb-core/dvb_net.c has a .disconnect versus dvb_device_open race condition that leads to a use-after-free.(CVE-2022-45886)\n\nA use-after-free vulnerability was found in the Linux kernel\u0026apos;s netfilter subsystem in net/netfilter/nf_tables_api.c.\n\nMishandled error handling with NFT_MSG_NEWRULE makes it possible to use a dangling pointer in the same transaction causing a use-after-free vulnerability. This flaw allows a local attacker with user access to cause a privilege escalation issue.\n\nWe recommend upgrading past commit 1240eb93f0616b21c675416516ff3d74798fdc97.(CVE-2023-3390)\n\nLinux Kernel nftables Out-Of-Bounds Read/Write Vulnerability; nft_byteorder poorly handled vm register contents when CAP_NET_ADMIN is in any user or network namespace(CVE-2023-35001)","affected":[{"package":{"ecosystem":"openEuler:20.03-LTS-SP1","name":"kernel","purl":"pkg:rpm/openEuler/kernel\u0026distro=openEuler-20.03-LTS-SP1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.19.90-2307.5.0.0211.oe1"}]}],"ecosystem_specific":{"aarch64":["kernel-debugsource-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","bpftool-debuginfo-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","bpftool-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","perf-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","kernel-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","kernel-debuginfo-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","kernel-tools-debuginfo-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","python2-perf-debuginfo-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","kernel-source-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","python3-perf-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","python2-perf-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","kernel-devel-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","kernel-tools-devel-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","python3-perf-debuginfo-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","kernel-tools-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","perf-debuginfo-4.19.90-2307.5.0.0211.oe1.aarch64.rpm"],"src":["kernel-4.19.90-2307.5.0.0211.oe1.src.rpm"],"x86_64":["python2-perf-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","bpftool-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","perf-debuginfo-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","kernel-tools-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","python3-perf-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","bpftool-debuginfo-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","kernel-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","kernel-debuginfo-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","python2-perf-debuginfo-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","kernel-debugsource-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","python3-perf-debuginfo-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","kernel-tools-devel-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","kernel-devel-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","kernel-source-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","perf-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","kernel-tools-debuginfo-4.19.90-2307.5.0.0211.oe1.x86_64.rpm"]}},{"package":{"ecosystem":"openEuler:20.03-LTS-SP3","name":"kernel","purl":"pkg:rpm/openEuler/kernel\u0026distro=openEuler-20.03-LTS-SP3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.19.90-2307.5.0.0211.oe1"}]}],"ecosystem_specific":{"aarch64":["python3-perf-debuginfo-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","kernel-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","python2-perf-debuginfo-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","kernel-devel-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","python2-perf-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","kernel-tools-debuginfo-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","kernel-tools-devel-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","kernel-debuginfo-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","kernel-debugsource-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","bpftool-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","kernel-tools-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","kernel-source-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","perf-debuginfo-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","bpftool-debuginfo-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","perf-4.19.90-2307.5.0.0211.oe1.aarch64.rpm","python3-perf-4.19.90-2307.5.0.0211.oe1.aarch64.rpm"],"src":["kernel-4.19.90-2307.5.0.0211.oe1.src.rpm"],"x86_64":["kernel-debuginfo-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","kernel-tools-devel-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","bpftool-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","python3-perf-debuginfo-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","kernel-source-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","python3-perf-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","kernel-devel-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","perf-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","perf-debuginfo-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","python2-perf-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","kernel-debugsource-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","kernel-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","kernel-tools-debuginfo-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","bpftool-debuginfo-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","kernel-tools-4.19.90-2307.5.0.0211.oe1.x86_64.rpm","python2-perf-debuginfo-4.19.90-2307.5.0.0211.oe1.x86_64.rpm"]}},{"package":{"ecosystem":"openEuler:22.03-LTS","name":"kernel","purl":"pkg:rpm/openEuler/kernel\u0026distro=openEuler-22.03-LTS"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.10.0-153.20.0.96.oe2203sp2"}]}],"ecosystem_specific":{"aarch64":["kernel-debugsource-5.10.0-60.104.0.131.oe2203.aarch64.rpm","kernel-devel-5.10.0-60.104.0.131.oe2203.aarch64.rpm","kernel-headers-5.10.0-60.104.0.131.oe2203.aarch64.rpm","bpftool-5.10.0-60.104.0.131.oe2203.aarch64.rpm","kernel-source-5.10.0-60.104.0.131.oe2203.aarch64.rpm","kernel-5.10.0-60.104.0.131.oe2203.aarch64.rpm","python3-perf-debuginfo-5.10.0-60.104.0.131.oe2203.aarch64.rpm","perf-debuginfo-5.10.0-60.104.0.131.oe2203.aarch64.rpm","kernel-tools-debuginfo-5.10.0-60.104.0.131.oe2203.aarch64.rpm","bpftool-debuginfo-5.10.0-60.104.0.131.oe2203.aarch64.rpm","perf-5.10.0-60.104.0.131.oe2203.aarch64.rpm","python3-perf-5.10.0-60.104.0.131.oe2203.aarch64.rpm","kernel-debuginfo-5.10.0-60.104.0.131.oe2203.aarch64.rpm","kernel-tools-5.10.0-60.104.0.131.oe2203.aarch64.rpm","kernel-tools-devel-5.10.0-60.104.0.131.oe2203.aarch64.rpm","kernel-tools-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","kernel-debuginfo-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","bpftool-debuginfo-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","kernel-debugsource-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","kernel-headers-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","kernel-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","kernel-tools-debuginfo-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","kernel-devel-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","python3-perf-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","kernel-tools-devel-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","perf-debuginfo-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","perf-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","kernel-source-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","python3-perf-debuginfo-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","bpftool-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","python3-perf-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","bpftool-debuginfo-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","python3-perf-debuginfo-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","kernel-headers-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","kernel-tools-debuginfo-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","perf-debuginfo-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","kernel-debugsource-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","kernel-devel-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","kernel-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","bpftool-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","perf-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","kernel-source-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","kernel-tools-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","kernel-tools-devel-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","kernel-debuginfo-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm"],"src":["kernel-5.10.0-60.104.0.131.oe2203.src.rpm","kernel-5.10.0-136.42.0.120.oe2203sp1.src.rpm","kernel-5.10.0-153.20.0.96.oe2203sp2.src.rpm"],"x86_64":["perf-5.10.0-60.104.0.131.oe2203.x86_64.rpm","kernel-tools-devel-5.10.0-60.104.0.131.oe2203.x86_64.rpm","bpftool-5.10.0-60.104.0.131.oe2203.x86_64.rpm","python3-perf-debuginfo-5.10.0-60.104.0.131.oe2203.x86_64.rpm","kernel-5.10.0-60.104.0.131.oe2203.x86_64.rpm","kernel-debugsource-5.10.0-60.104.0.131.oe2203.x86_64.rpm","python3-perf-5.10.0-60.104.0.131.oe2203.x86_64.rpm","kernel-tools-5.10.0-60.104.0.131.oe2203.x86_64.rpm","kernel-headers-5.10.0-60.104.0.131.oe2203.x86_64.rpm","perf-debuginfo-5.10.0-60.104.0.131.oe2203.x86_64.rpm","kernel-devel-5.10.0-60.104.0.131.oe2203.x86_64.rpm","kernel-tools-debuginfo-5.10.0-60.104.0.131.oe2203.x86_64.rpm","kernel-debuginfo-5.10.0-60.104.0.131.oe2203.x86_64.rpm","kernel-source-5.10.0-60.104.0.131.oe2203.x86_64.rpm","bpftool-debuginfo-5.10.0-60.104.0.131.oe2203.x86_64.rpm","kernel-headers-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","kernel-tools-debuginfo-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","perf-debuginfo-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","bpftool-debuginfo-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","kernel-devel-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","perf-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","kernel-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","kernel-debuginfo-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","bpftool-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","kernel-tools-devel-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","python3-perf-debuginfo-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","kernel-debugsource-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","kernel-tools-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","python3-perf-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","kernel-source-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","perf-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","python3-perf-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","kernel-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","kernel-tools-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","kernel-headers-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","kernel-debugsource-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","bpftool-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","kernel-source-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","kernel-debuginfo-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","bpftool-debuginfo-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","perf-debuginfo-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","python3-perf-debuginfo-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","kernel-devel-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","kernel-tools-devel-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","kernel-tools-debuginfo-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm"]}},{"package":{"ecosystem":"openEuler:22.03-LTS-SP1","name":"kernel","purl":"pkg:rpm/openEuler/kernel\u0026distro=openEuler-22.03-LTS-SP1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.10.0-136.42.0.120.oe2203sp1"}]}],"ecosystem_specific":{"aarch64":["kernel-tools-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","kernel-debuginfo-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","bpftool-debuginfo-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","kernel-debugsource-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","kernel-headers-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","kernel-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","kernel-tools-debuginfo-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","kernel-devel-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","python3-perf-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","kernel-tools-devel-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","perf-debuginfo-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","perf-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","kernel-source-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","python3-perf-debuginfo-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm","bpftool-5.10.0-136.42.0.120.oe2203sp1.aarch64.rpm"],"src":["kernel-5.10.0-136.42.0.120.oe2203sp1.src.rpm"],"x86_64":["kernel-headers-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","kernel-tools-debuginfo-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","perf-debuginfo-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","bpftool-debuginfo-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","kernel-devel-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","perf-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","kernel-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","kernel-debuginfo-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","bpftool-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","kernel-tools-devel-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","python3-perf-debuginfo-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","kernel-debugsource-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","kernel-tools-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","python3-perf-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm","kernel-source-5.10.0-136.42.0.120.oe2203sp1.x86_64.rpm"]}},{"package":{"ecosystem":"openEuler:22.03-LTS-SP2","name":"kernel","purl":"pkg:rpm/openEuler/kernel\u0026distro=openEuler-22.03-LTS-SP2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.10.0-153.20.0.96.oe2203sp2"}]}],"ecosystem_specific":{"aarch64":["python3-perf-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","bpftool-debuginfo-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","python3-perf-debuginfo-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","kernel-headers-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","kernel-tools-debuginfo-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","perf-debuginfo-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","kernel-debugsource-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","kernel-devel-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","kernel-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","bpftool-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","perf-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","kernel-source-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","kernel-tools-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","kernel-tools-devel-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm","kernel-debuginfo-5.10.0-153.20.0.96.oe2203sp2.aarch64.rpm"],"src":["kernel-5.10.0-153.20.0.96.oe2203sp2.src.rpm"],"x86_64":["perf-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","python3-perf-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","kernel-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","kernel-tools-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","kernel-headers-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","kernel-debugsource-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","bpftool-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","kernel-source-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","kernel-debuginfo-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","bpftool-debuginfo-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","perf-debuginfo-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","python3-perf-debuginfo-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","kernel-devel-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","kernel-tools-devel-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm","kernel-tools-debuginfo-5.10.0-153.20.0.96.oe2203sp2.x86_64.rpm"]}}],"references":[{"type":"ADVISORY","url":"https://www.openeuler.org/en/security/safety-bulletin/detail.html?id=openEuler-SA-2023-1448"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-45886"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-3390"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-35001"}],"database_specific":{"severity":"High"}}