Rewterz
Rewterz Threat Alert – STOP (DJVU) Ransomware – Active IOCs
October 3, 2023
Rewterz
Rewterz Threat Alert – “Stealc” – An Information Stealer Malware – Active IOCs
October 3, 2023

Rewterz Threat Advisory – CVE-2023-42754 – Linux Kernel Vulnerability

Severity

Medium

Analysis Summary

CVE-2023-42754

Linux Kernel is vulnerable to a denial of service, caused by a NULL pointer dereference flaw in the ipv4_send_dest_unreach function in net/ipv4/route.c. By sending a specially crafted request, a local authenticated attacker could exploit this vulnerability to cause a denial of service condition.

Impact

  • Denial of Service

Indicators Of Compromise

CVE

  • CVE-2023-42754

Affected Vendors

Linux

Affected Products

  • Linux Kernel 6.1
  • Linux Kernel 6.2.16

Remediation

Refer to Linux Kernel GIT Repository for patch, upgrade or suggested workaround information.

Linux Kernel GIT Repository