A NULL pointer dereference vulnerability was found in netlinkdump. This issue can occur when the Netlink socket receives the message(sendmsg) for the XFRMMSGGETSA, XFRMMSG_GETPOLICY type message, and the DUMP flag is set and can cause a denial of service or possibly another unspecified impact. Due to the nature of the flaw, privilege escalation cannot be fully ruled out, although it is unlikely.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-3106.json"
[
{
"signature_type": "Function",
"signature_version": "v1",
"source": "https://github.com/torvalds/linux/commit/1ba5bf993c6a3142e18e68ea6452b347f9cb5635",
"digest": {
"function_hash": "225790218103838960804331873037436885496",
"length": 982.0
},
"id": "CVE-2023-3106-253a587f",
"deprecated": false,
"target": {
"file": "net/xfrm/xfrm_user.c",
"function": "xfrm_dump_sa"
}
},
{
"signature_type": "Function",
"signature_version": "v1",
"source": "https://github.com/torvalds/linux/commit/1ba5bf993c6a3142e18e68ea6452b347f9cb5635",
"digest": {
"function_hash": "104164298315005629168161323019558057496",
"length": 198.0
},
"id": "CVE-2023-3106-32c957d0",
"deprecated": false,
"target": {
"file": "net/xfrm/xfrm_user.c",
"function": "xfrm_dump_sa_done"
}
},
{
"signature_type": "Line",
"signature_version": "v1",
"source": "https://github.com/torvalds/linux/commit/1ba5bf993c6a3142e18e68ea6452b347f9cb5635",
"digest": {
"line_hashes": [
"273827211861538094746218906915717673413",
"312413614563013177084731095399630797865",
"39431935319361851050071646865462303332",
"307693172565845050745103295892626174349",
"104331326331605250696513034039498572783",
"153552871353146122775057053514127507931",
"325361127991066766932323692390874017904",
"115511826410938447786776618282358874131",
"209995886788778536561293828564226153575",
"326493750105437442155236865117201081705",
"79633043821700443034896319586968676425",
"228195429028927204027864249405300495697"
],
"threshold": 0.9
},
"id": "CVE-2023-3106-abc5eb4a",
"deprecated": false,
"target": {
"file": "net/xfrm/xfrm_user.c"
}
}
]