Rewterz
Rewterz Threat Alert – GuLoader Malspam Campaign – Active IOCs
October 3, 2023
Rewterz
Rewterz Threat Alert – Gafgyt aka Bashlite Malware – Active IOCs
October 4, 2023

Rewterz Threat Advisory – CVE-2023-5345 – Linux Kernel Vulnerability

Severity

High

Analysis Summary

CVE-2023-5345

Linux Kernel could allow a local authenticated attacker to gain elevated privileges on the system, caused by a use-after-free flaw in the smb3_fs_context_parse_param function in the fs/smb/client component. By sending a specially crafted request, an authenticated attacker could exploit this vulnerability to gain elevated privileges.

Impact

  • Privilege Escalation

Indicators Of Compromise

CVE

  • CVE-2023-5345

Affected Vendors

Linux

Affected Products

  • Linux Kernel 6.5

Remediation

Refer to Linux Kernel GIT Repository for patch, upgrade or suggested workaround information.

Linux Kernel GIT Repository