A null pointer dereference issue was found in can protocol in net/can/af_can.c in the Linux before Linux. ml_priv may not be initialized in the receive path of CAN frames. A local user could use this flaw to crash the system or potentially cause a denial of service.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 07:58
Type | Values Removed | Values Added |
---|---|---|
References | () https://lore.kernel.org/lkml/CAO4mrfcV_07hbj8NUuZrA8FH-kaRsrFy-2metecpTuE5kKHn5w%40mail.gmail.com/ - |
07 Nov 2023, 04:12
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2023-04-19 23:15
Updated : 2024-11-21 07:58
NVD link : CVE-2023-2166
Mitre link : CVE-2023-2166
CVE.ORG link : CVE-2023-2166
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-476
NULL Pointer Dereference