Use-after-free in Linux kernel - CVE-2023-26544
Published: May 16, 2023
Vulnerability details
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to a use-after-free error within the run_unpack() function in fs/ntfs3/run.c, related to a difference between NTFS sector size and media sector size. A local user can trigger a use-after-free error and execute arbitrary code with elevated privileges.
Affected software
Amazon Linux AMI
openEuler
Ubuntu
python2-perf
python3-perf-debuginfo
python3-perf
kernel-tools-debuginfo
perf
kernel
kernel-tools-devel
kernel-debugsource
bpftool-debuginfo
perf-debuginfo
bpftool
kernel-tools
kernel-source
kernel-devel
kernel-debuginfo
python2-perf-debuginfo
linux-image-generic-lpae (Ubuntu package)
linux-image-generic-64k (Ubuntu package)
linux-image-generic (Ubuntu package)
linux-image-virtual (Ubuntu package)
linux-image-5.19.0-42-generic-lpae (Ubuntu package)
linux-image-5.19.0-42-generic-64k (Ubuntu package)
linux-image-5.19.0-42-generic (Ubuntu package)
linux-image-virtual-hwe-22.04 (Ubuntu package)
linux-image-generic-lpae-hwe-22.04 (Ubuntu package)
linux-image-generic-hwe-22.04 (Ubuntu package)
linux-image-generic-64k-hwe-22.04 (Ubuntu package)
linux-image-raspi (Ubuntu package)
linux-image-raspi-nolpae (Ubuntu package)
linux-image-5.19.0-1018-raspi-nolpae (Ubuntu package)
linux-image-5.19.0-1018-raspi (Ubuntu package)
linux-image-ibm (Ubuntu package)
linux-image-5.19.0-1022-ibm (Ubuntu package)
linux-image-oracle (Ubuntu package)
linux-image-kvm (Ubuntu package)
linux-image-5.19.0-1023-kvm (Ubuntu package)
linux-image-5.19.0-1023-oracle (Ubuntu package)
linux-image-gcp (Ubuntu package)
linux-image-lowlatency (Ubuntu package)
linux-image-lowlatency-64k (Ubuntu package)
linux-image-5.19.0-1024-lowlatency-64k (Ubuntu package)
linux-image-5.19.0-1024-lowlatency (Ubuntu package)
linux-image-5.19.0-1024-gcp (Ubuntu package)
linux-image-aws (Ubuntu package)
linux-image-5.19.0-1025-aws (Ubuntu package)
linux-image-azure (Ubuntu package)
linux-image-5.19.0-1026-azure (Ubuntu package)
How to mitigate CVE-2023-26544
python3-perf-debuginfo - update to 4.19.90-2305.2.0.0201
python3-perf - update to 4.19.90-2305.2.0.0201
kernel-tools-debuginfo - update to 4.19.90-2305.2.0.0201
perf - update to 4.19.90-2305.2.0.0201
kernel - update to 4.19.90-2305.2.0.0201
kernel-tools-devel - update to 4.19.90-2305.2.0.0201
kernel-debugsource - update to 4.19.90-2305.2.0.0201
bpftool-debuginfo - update to 4.19.90-2305.2.0.0201
perf-debuginfo - update to 4.19.90-2305.2.0.0201
bpftool - update to 4.19.90-2305.2.0.0201
kernel-tools - update to 4.19.90-2305.2.0.0201
kernel-source - update to 4.19.90-2305.2.0.0201
kernel-devel - update to 4.19.90-2305.2.0.0201
kernel-debuginfo - update to 4.19.90-2305.2.0.0201
python2-perf-debuginfo - update to 4.19.90-2305.2.0.0201
linux-image-generic-lpae (Ubuntu package) - update to 5.19.0.42.38
linux-image-generic-64k (Ubuntu package) - update to 5.19.0.42.38
linux-image-generic (Ubuntu package) - update to 5.19.0.42.38
linux-image-virtual (Ubuntu package) - update to 5.19.0.42.38
linux-image-5.19.0-42-generic-lpae (Ubuntu package) - addressed in versions 5.19.0-42.43, 5.19.0-42.43~22.04.1
linux-image-5.19.0-42-generic-64k (Ubuntu package) - addressed in versions 5.19.0-42.43, 5.19.0-42.43~22.04.1
linux-image-5.19.0-42-generic (Ubuntu package) - addressed in versions 5.19.0-42.43, 5.19.0-42.43~22.04.1
linux-image-virtual-hwe-22.04 (Ubuntu package) - update to 5.19.0.42.43~22.04.15
linux-image-generic-lpae-hwe-22.04 (Ubuntu package) - update to 5.19.0.42.43~22.04.15
linux-image-generic-hwe-22.04 (Ubuntu package) - update to 5.19.0.42.43~22.04.15
linux-image-generic-64k-hwe-22.04 (Ubuntu package) - update to 5.19.0.42.43~22.04.15
linux-image-raspi (Ubuntu package) - update to 5.19.0.1018.17
linux-image-raspi-nolpae (Ubuntu package) - update to 5.19.0.1018.17
linux-image-5.19.0-1018-raspi-nolpae (Ubuntu package) - update to 5.19.0-1018.25
linux-image-5.19.0-1018-raspi (Ubuntu package) - update to 5.19.0-1018.25
linux-image-ibm (Ubuntu package) - update to 5.19.0.1022.19
linux-image-5.19.0-1022-ibm (Ubuntu package) - update to 5.19.0-1022.24
linux-image-oracle (Ubuntu package) - update to 5.19.0.1023.19
linux-image-kvm (Ubuntu package) - update to 5.19.0.1023.20
linux-image-5.19.0-1023-kvm (Ubuntu package) - update to 5.19.0-1023.24
linux-image-5.19.0-1023-oracle (Ubuntu package) - update to 5.19.0-1023.26
linux-image-gcp (Ubuntu package) - update to 5.19.0.1024.20
linux-image-lowlatency (Ubuntu package) - update to 5.19.0.1024.20
linux-image-lowlatency-64k (Ubuntu package) - update to 5.19.0.1024.20
linux-image-5.19.0-1024-lowlatency-64k (Ubuntu package) - update to 5.19.0-1024.25
linux-image-5.19.0-1024-lowlatency (Ubuntu package) - update to 5.19.0-1024.25
linux-image-5.19.0-1024-gcp (Ubuntu package) - update to 5.19.0-1024.26
linux-image-aws (Ubuntu package) - update to 5.19.0.1025.22
linux-image-5.19.0-1025-aws (Ubuntu package) - update to 5.19.0-1025.26
linux-image-azure (Ubuntu package) - update to 5.19.0.1026.21
linux-image-5.19.0-1026-azure (Ubuntu package) - update to 5.19.0-1026.29~22.04.1
kernel - update to 6.1.10-15.42