Use After Free vulnerability in Linux kernel traffic control index filter (tcindex) allows Privilege Escalation. The imperfect hash area can be updated while packets are traversing, which will cause a use-after-free when 'tcfextsexec()' is called with the destroyed tcf_ext. A local attacker user can use this vulnerability to elevate its privileges to root. This issue affects Linux Kernel: from 4.14 before git commit ee059170b1f7e94e55fa6cadee544e176a6e59c2.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-1281.json"
[
{
"events": [
{
"introduced": "4.14"
},
{
"fixed": "5.10.169"
}
]
},
{
"events": [
{
"introduced": "5.11"
},
{
"fixed": "5.15.95"
}
]
},
{
"events": [
{
"introduced": "5.16"
},
{
"fixed": "6.1.13"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "6.2-rc1"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "6.2-rc2"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "6.2-rc3"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "6.2-rc4"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "6.2-rc5"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "6.2-rc6"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "6.2-rc7"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "6.2-rc8"
}
]
}
]