Fedora Account System
Red Hat Associate
Red Hat Customer
netconsd prior to v0.2 was vulnerable to an integer overflow in its parse_packet function. A malicious individual could leverage this overflow to create heap memory corruption with attacker controlled data. References: https://www.facebook.com/security/advisories/cve-2023-28753 https://github.com/facebook/netconsd/commit/9fc54edf54f7caea1189c2b979337ed37af2c60e
Created netconsd tracking bugs for this issue: Affects: epel-all [bug 2208938] Affects: fedora-all [bug 2208937]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.