Aller au contenu

Fiche vulnérabilité

CVE-2023-2007 : faille élevée linux linux kernel (CVSS 7.8)

Description

The specific flaw exists within the DPT I2O Controller driver. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the kernel.

En bref

Sévérité
Élevée (CVSS 7.8)
Vecteur CVSS
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
24 avr. 2023
Dernière mise à jour
17 juin 2026

Produits concernés

  • linux linux kernel
  • debian debian linux
  • netapp h300s firmware
  • netapp h500s firmware
  • netapp h700s firmware
  • netapp h410s firmware
  • netapp h410c firmware
  • netapp solidfire \& hci management node

Références

Rechercher une autre vulnérabilité dans la base CVE