Bug 2244723 (CVE-2023-45871) - CVE-2023-45871 kernel: IGB driver inadequate buffer size for frames larger than MTU
Summary: CVE-2023-45871 kernel: IGB driver inadequate buffer size for frames larger th...
Keywords:
Status: NEW
Alias: CVE-2023-45871
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
high
high
Target Milestone: ---
Assignee: Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 2244724
Blocks: 2244710
TreeView+ depends on / blocked
 
Reported: 2023-10-17 22:52 UTC by Robb Gatica
Modified: 2024-04-17 19:06 UTC (History)
46 users (show)

Fixed In Version: Kernel 6.6-rc1
Doc Type: If docs needed, set a value
Doc Text:
A flaw was found in igb_configure_rx_ring in drivers/net/ethernet/intel/igb/igb_main.c in the IGB driver in the Linux kernel. An overflow of the contents from a packet that is too large will overflow into the kernel's ring buffer, leading to a system integrity issue.
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHBA-2024:0637 0 None None None 2024-02-01 00:08:54 UTC
Red Hat Product Errata RHBA-2024:0673 0 None None None 2024-02-05 10:13:03 UTC
Red Hat Product Errata RHBA-2024:0688 0 None None None 2024-02-05 17:04:09 UTC
Red Hat Product Errata RHBA-2024:1338 0 None None None 2024-03-14 15:52:21 UTC
Red Hat Product Errata RHBA-2024:1350 0 None None None 2024-03-18 08:41:30 UTC
Red Hat Product Errata RHSA-2023:7734 0 None None None 2023-12-12 10:54:42 UTC
Red Hat Product Errata RHSA-2023:7749 0 None None None 2023-12-12 17:22:24 UTC
Red Hat Product Errata RHSA-2024:0378 0 None None None 2024-01-23 17:28:30 UTC
Red Hat Product Errata RHSA-2024:0381 0 None None None 2024-01-23 17:50:24 UTC
Red Hat Product Errata RHSA-2024:0386 0 None None None 2024-01-24 09:08:01 UTC
Red Hat Product Errata RHSA-2024:0412 0 None None None 2024-01-24 16:45:27 UTC
Red Hat Product Errata RHSA-2024:0431 0 None None None 2024-01-24 15:24:49 UTC
Red Hat Product Errata RHSA-2024:0432 0 None None None 2024-01-24 15:25:38 UTC
Red Hat Product Errata RHSA-2024:0439 0 None None None 2024-01-24 16:36:32 UTC
Red Hat Product Errata RHSA-2024:0448 0 None None None 2024-01-24 16:38:19 UTC
Red Hat Product Errata RHSA-2024:0554 0 None None None 2024-01-30 00:34:18 UTC
Red Hat Product Errata RHSA-2024:0562 0 None None None 2024-01-30 12:28:11 UTC
Red Hat Product Errata RHSA-2024:0563 0 None None None 2024-01-30 12:27:19 UTC
Red Hat Product Errata RHSA-2024:0575 0 None None None 2024-01-30 13:22:29 UTC
Red Hat Product Errata RHSA-2024:0593 0 None None None 2024-01-30 13:10:33 UTC
Red Hat Product Errata RHSA-2024:0876 0 None None None 2024-02-20 04:53:47 UTC
Red Hat Product Errata RHSA-2024:0881 0 None None None 2024-02-20 12:28:38 UTC
Red Hat Product Errata RHSA-2024:0897 0 None None None 2024-02-20 12:33:22 UTC
Red Hat Product Errata RHSA-2024:0980 0 None None None 2024-02-26 09:38:34 UTC
Red Hat Product Errata RHSA-2024:0999 0 None None None 2024-02-27 06:36:20 UTC
Red Hat Product Errata RHSA-2024:1249 0 None None None 2024-03-12 00:47:34 UTC
Red Hat Product Errata RHSA-2024:1268 0 None None None 2024-03-12 11:44:11 UTC
Red Hat Product Errata RHSA-2024:1269 0 None None None 2024-03-12 11:45:24 UTC
Red Hat Product Errata RHSA-2024:1278 0 None None None 2024-03-12 15:00:44 UTC
Red Hat Product Errata RHSA-2024:1323 0 None None None 2024-03-13 22:50:50 UTC
Red Hat Product Errata RHSA-2024:1332 0 None None None 2024-03-14 14:51:16 UTC

Description Robb Gatica 2023-10-17 22:52:04 UTC
An issue was discovered in igb_configure_rx_ring in drivers/net/ethernet/intel/igb/igb_main.c in IGB driver in the Linux kernel. In this flaw, an attacker will need to be on the adjacent physical layer, as the data in the physical hardware maximum transmission unit (MTU) and not in the TCP protocol, and a buffer size may not be adequate for frames larger than the MTU.

Reference;
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/commit/?id=bb5ed01cd2428cd25b1c88a3a9cba87055eb289f

Comment 1 Robb Gatica 2023-10-17 22:52:26 UTC
Created kernel tracking bugs for this issue:

Affects: fedora-all [bug 2244724]

Comment 2 Justin M. Forbes 2023-10-18 13:47:23 UTC
This was fixed for Fedora with the 6.5.3 stable kernel updates.

Comment 6 errata-xmlrpc 2023-12-12 10:54:40 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9

Via RHSA-2023:7734 https://access.redhat.com/errata/RHSA-2023:7734

Comment 7 errata-xmlrpc 2023-12-12 17:22:21 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9

Via RHSA-2023:7749 https://access.redhat.com/errata/RHSA-2023:7749

Comment 8 errata-xmlrpc 2024-01-23 17:28:27 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.6 Extended Update Support

Via RHSA-2024:0378 https://access.redhat.com/errata/RHSA-2024:0378

Comment 9 errata-xmlrpc 2024-01-23 17:50:22 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.2 Extended Update Support

Via RHSA-2024:0381 https://access.redhat.com/errata/RHSA-2024:0381

Comment 10 errata-xmlrpc 2024-01-24 09:07:58 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.0 Extended Update Support

Via RHSA-2024:0386 https://access.redhat.com/errata/RHSA-2024:0386

Comment 11 errata-xmlrpc 2024-01-24 15:24:46 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.0 Extended Update Support

Via RHSA-2024:0431 https://access.redhat.com/errata/RHSA-2024:0431

Comment 12 errata-xmlrpc 2024-01-24 15:25:36 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.0 Extended Update Support

Via RHSA-2024:0432 https://access.redhat.com/errata/RHSA-2024:0432

Comment 13 errata-xmlrpc 2024-01-24 16:36:30 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.2 Extended Update Support

Via RHSA-2024:0439 https://access.redhat.com/errata/RHSA-2024:0439

Comment 14 errata-xmlrpc 2024-01-24 16:38:16 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.2 Extended Update Support

Via RHSA-2024:0448 https://access.redhat.com/errata/RHSA-2024:0448

Comment 15 errata-xmlrpc 2024-01-24 16:45:23 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.6 Extended Update Support

Via RHSA-2024:0412 https://access.redhat.com/errata/RHSA-2024:0412

Comment 16 errata-xmlrpc 2024-01-30 00:34:15 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.8 Extended Update Support

Via RHSA-2024:0554 https://access.redhat.com/errata/RHSA-2024:0554

Comment 17 errata-xmlrpc 2024-01-30 12:27:15 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support
  Red Hat Enterprise Linux 8.4 Telecommunications Update Service
  Red Hat Enterprise Linux 8.4 Update Services for SAP Solutions

Via RHSA-2024:0563 https://access.redhat.com/errata/RHSA-2024:0563

Comment 18 errata-xmlrpc 2024-01-30 12:28:07 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support
  Red Hat Enterprise Linux 8.4 Update Services for SAP Solutions
  Red Hat Enterprise Linux 8.4 Telecommunications Update Service

Via RHSA-2024:0562 https://access.redhat.com/errata/RHSA-2024:0562

Comment 19 errata-xmlrpc 2024-01-30 13:10:29 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.4 Update Services for SAP Solutions

Via RHSA-2024:0593 https://access.redhat.com/errata/RHSA-2024:0593

Comment 20 errata-xmlrpc 2024-01-30 13:22:24 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.8 Extended Update Support

Via RHSA-2024:0575 https://access.redhat.com/errata/RHSA-2024:0575

Comment 22 errata-xmlrpc 2024-02-20 04:53:44 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2024:0876 https://access.redhat.com/errata/RHSA-2024:0876

Comment 23 errata-xmlrpc 2024-02-20 12:28:33 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2024:0881 https://access.redhat.com/errata/RHSA-2024:0881

Comment 24 errata-xmlrpc 2024-02-20 12:33:19 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2024:0897 https://access.redhat.com/errata/RHSA-2024:0897

Comment 25 errata-xmlrpc 2024-02-26 09:38:30 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 7.6 Advanced Update Support

Via RHSA-2024:0980 https://access.redhat.com/errata/RHSA-2024:0980

Comment 26 errata-xmlrpc 2024-02-27 06:36:16 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 7.7 Advanced Update Support

Via RHSA-2024:0999 https://access.redhat.com/errata/RHSA-2024:0999

Comment 27 errata-xmlrpc 2024-03-12 00:47:28 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 7

Via RHSA-2024:1249 https://access.redhat.com/errata/RHSA-2024:1249

Comment 28 errata-xmlrpc 2024-03-12 11:44:08 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.2 Advanced Update Support
  Red Hat Enterprise Linux 8.2 Telecommunications Update Service
  Red Hat Enterprise Linux 8.2 Update Services for SAP Solutions

Via RHSA-2024:1268 https://access.redhat.com/errata/RHSA-2024:1268

Comment 29 errata-xmlrpc 2024-03-12 11:45:20 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.2 Telecommunications Update Service

Via RHSA-2024:1269 https://access.redhat.com/errata/RHSA-2024:1269

Comment 30 errata-xmlrpc 2024-03-12 15:00:40 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.2 Update Services for SAP Solutions

Via RHSA-2024:1278 https://access.redhat.com/errata/RHSA-2024:1278

Comment 31 errata-xmlrpc 2024-03-13 22:50:46 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 7

Via RHSA-2024:1323 https://access.redhat.com/errata/RHSA-2024:1323

Comment 32 errata-xmlrpc 2024-03-14 14:51:13 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 7

Via RHSA-2024:1332 https://access.redhat.com/errata/RHSA-2024:1332


Note You need to log in before you can comment on or make changes to this bug.