ID:11810 - Exploit for Input validation error in Linux kernel - CVE-2023-52927

 
Main Vulnerability Database Exploits ID:11810 - Exploit for Input validation error in Linux kernel - CVE-2023-52927

ID:11810 - Exploit for Input validation error in Linux kernel - CVE-2023-52927

Published: August 1, 2025


Vulnerability identifier: #VU105746
Vulnerability risk: Low
CVE-ID: CVE-2023-52927
CWE-ID: CWE-20
Exploitation vector: Local access
Vulnerable software:
Linux kernel

Link to public exploit:


Vulnerability description

The vulnerability allows a local user to perform a denial of service (DoS) attack.

The vulnerability exists due to improper input validation within the nft_ct_set_zone_eval() and nft_ct_tmpl_alloc_pcpu() functions in net/netfilter/nft_ct.c, within the EXPORT_SYMBOL_GPL() and nf_ct_find_expectation() functions in net/netfilter/nf_conntrack_expect.c, within the init_conntrack() function in net/netfilter/nf_conntrack_core.c. A local user can perform a denial of service (DoS) attack.


Remediation

Install update from vendor's website.