Vulnerabilities > CVE-2023-1077 - Type Confusion vulnerability in multiple products

047910
CVSS 7.0 - HIGH
Attack vector
LOCAL
Attack complexity
HIGH
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
high complexity
linux
debian
netapp
CWE-843

Summary

In the Linux kernel, pick_next_rt_entity() may return a type confused entry, not detected by the BUG_ON condition, as the confused entry will not be NULL, but list_head.The buggy error condition would lead to a type confused entry with the list head,which would then be used as a type confused sched_rt_entity,causing memory corruption.

Vulnerable Configurations

Part Description Count
OS
Linux
4199
OS
Debian
1
OS
Netapp
10
Hardware
Netapp
10