Fiche vulnérabilité
CVE-2023-2007 : faille élevée linux linux kernel (CVSS 7.8)
Description
The specific flaw exists within the DPT I2O Controller driver. The issue results from the lack of proper locking when performing operations on an object. An attacker can leverage this in conjunction with other vulnerabilities to escalate privileges and execute arbitrary code in the context of the kernel.
En bref
- Sévérité
- Élevée (CVSS 7.8)
- Vecteur CVSS
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 24 avr. 2023
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- linux linux kernel
- debian debian linux
- netapp h300s firmware
- netapp h500s firmware
- netapp h700s firmware
- netapp h410s firmware
- netapp h410c firmware
- netapp solidfire \& hci management node