The perf_group_detach function did not check the event's siblings' attach_state before calling add_event_to_groups(), but remove_on_exec made it possible to call list_del_event() on before detaching from their group, making it possible to use a dangling pointer causing a use-after-free vulnerability.
We recommend upgrading past commit fd0815f632c24878e325821943edccc7fde947a2.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-33745 | A use-after-free vulnerability in the Linux Kernel Performance Events system can be exploited to achieve local privilege escalation. The perf_group_detach function did not check the event's siblings' attach_state before calling add_event_to_groups(), but remove_on_exec made it possible to call list_del_event() on before detaching from their group, making it possible to use a dangling pointer causing a use-after-free vulnerability. We recommend upgrading past commit fd0815f632c24878e325821943edccc7fde947a2. |
Ubuntu USN |
USN-6175-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6186-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6300-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6311-1 | Linux kernel vulnerabilities |
Ubuntu USN |
USN-6332-1 | Linux kernel (Azure) vulnerabilities |
Ubuntu USN |
USN-6347-1 | Linux kernel (Azure CVM) vulnerabilities |
Ubuntu USN |
USN-6385-1 | Linux kernel (OEM) vulnerabilities |
Wed, 05 Mar 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 22 Nov 2024 12:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Status: PUBLISHED
Assigner: Google
Published:
Updated: 2025-03-05T19:03:27.818Z
Reserved: 2023-04-21T17:43:15.944Z
Link: CVE-2023-2235
Updated: 2024-08-02T06:19:13.580Z
Status : Modified
Published: 2023-05-01T13:15:44.713
Modified: 2024-11-21T07:58:12.630
Link: CVE-2023-2235
OpenCVE Enrichment
No data.
EUVD
Ubuntu USN