Back to bug 2192671

Who When What Removed Added
Alex 2023-05-02 17:22:14 UTC Summary CVE-2023-31436 CVE-2023-2248 kernel: out-of-bounds write in qfq_change_class function CVE-2023-2248 CVE-2023-31436 kernel: out-of-bounds write in qfq_change_class function
Alex 2023-05-02 17:24:13 UTC Comment 1 updated
Alex 2023-05-02 17:25:21 UTC Depends On 2192679
Alex 2023-05-02 17:27:16 UTC Depends On 2192681, 2192680, 2192682, 2192683
Alex 2023-05-02 17:36:45 UTC Doc Text A flaw out of bounds memory access in the Linux kernel traffic control (QoS) subsystem was found in the way user triggers qfq_change_class function with incorrect MTU value of the network device that is being used as lmax. A local user could use this flaw to crash the system or potentially escalate their privileges on the system.
RaTasha Tillery-Smith 2023-05-02 18:53:40 UTC Doc Text A flaw out of bounds memory access in the Linux kernel traffic control (QoS) subsystem was found in the way user triggers qfq_change_class function with incorrect MTU value of the network device that is being used as lmax. A local user could use this flaw to crash the system or potentially escalate their privileges on the system. An out-of-bounds memory access flaw was found in the Linux kernel’s traffic control (QoS) subsystem in how a user triggers the qfq_change_class function with an incorrect MTU value of the network device used as lmax. This flaw allows a local user to crash or potentially escalate their privileges on the system.
Rohit Keshri 2023-05-30 09:57:20 UTC Alias CVE-2023-2248
Summary CVE-2023-2248 CVE-2023-31436 kernel: out-of-bounds write in qfq_change_class function CVE-2023-31436 kernel: out-of-bounds write in qfq_change_class function
Red Hat Bugzilla 2023-07-07 08:31:33 UTC Assignee security-response-team nobody
Mauro Matteo Cascella 2023-07-26 18:55:57 UTC Blocks 2225771
CC mcascell

Back to bug 2192671