HomeLinuxCVE-2023-23005

CVE-2023-23005

MEDIUM
5.5CVSS
Published: 2023-03-01
Updated: 2025-03-19
AI Analysis

Description

In the Linux kernel before 6.2, mm/memory-tiers.c misinterprets the alloc_memory_type return value (expects it to be NULL in the error case, whereas it is actually an error pointer). NOTE: this is disputed by third parties because there are no realistic cases in which a user can cause the alloc_memory_type error case to be reached.

CVSS Metrics

Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Attack Vector
local
Complexity
low
Privileges
low
User Action
none
Scope
unchanged
Confidentiality
none
Integrity
none
Availability
high
Weaknesses
CWE-476CWE-476

Metadata

Primary Vendor
LINUX
Published
3/1/2023
Last Modified
3/19/2025
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

linux : linux_kernelsuse : linux_enterprise_server

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2023-23005 | MEDIUM Severity | CVEDatabase.com | CVEDatabase.com