CVE-2022-32296

Description

The Linux kernel before 5.17.9 allows TCP servers to identify clients by observing what source ports are used. This occurs because of use of Algorithm 4 (Double-Hash Port Selection Algorithm) of RFC 6056.

Risk Information

Base Score
3.3
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
EPSS Score
Exploitation Probability
0.039

Associated Vulnerability

VulnerabilityOS Platform
Linux kernel for Intel IoT platforms (USN-5616-1) linux-image-intel-iotg_5.15.0.1015.16_amd64.debLinux
Linux kernel for Intel IoT platforms (USN-5616-1) linux-image-5.15.0-1015-intel-iotg_5.15.0-1015.20_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-aws_5.4.0.1089.68_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-ibm_5.4.0.1037.50_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-ibm_5.4.0.1037.65_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-kvm_5.4.0.1075.72_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-oem_5.4.0.132.132_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-oem_5.4.0.132.148~18.04.109_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-azure_5.4.0.1095.71_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-gkeop_5.4.0.1057.57_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-oracle_5.4.0.1087.96~18.04.63_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-generic_5.4.0.126.127_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-virtual_5.4.0.126.127_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-oem-osp1_5.4.0.132.132_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-oem-osp1_5.4.0.132.148~18.04.109_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-gkeop-5.4_5.4.0.1057.57_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-lowlatency_5.4.0.126.127_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-aws-lts-20.04_5.4.0.1089.88_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-ibm-lts-20.04_5.4.0.1037.65_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-5.4.0-1033-ibm_5.4.0-1033.37_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-5.4.0-1033-ibm_5.4.0-1033.37~18.04.1_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-5.4.0-1075-kvm_5.4.0-1075.80_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-5.4.0-1085-aws_5.4.0-1085.92_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-5.4.0-1085-aws_5.4.0-1085.92~18.04.1_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-azure-lts-20.04_5.4.0.1095.91_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-5.4.0-1053-gkeop_5.4.0-1053.56_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-5.4.0-1091-azure_5.4.0-1091.96_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-5.4.0-1091-azure_5.4.0-1091.96~18.04.1_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-oracle-lts-20.04_5.4.0.1087.83_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-5.4.0-1083-oracle_5.4.0-1083.91_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-5.4.0-1083-oracle_5.4.0-1083.91~18.04.1_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-5.4.0-126-generic_5.4.0-126.142_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-5.4.0-126-generic_5.4.0-126.142~18.04.1_i386.debLinux
Linux kernel (USN-5622-1) linux-image-5.4.0-126-generic_5.4.0-126.142~18.04.1_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-generic-hwe-18.04_5.4.0.128.144~18.04.107_i386.debLinux
Linux kernel (USN-5622-1) linux-image-generic-hwe-18.04_5.4.0.126.142~18.04.106_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-virtual-hwe-18.04_5.4.0.132.148~18.04.109_i386.debLinux
Linux kernel (USN-5622-1) linux-image-virtual-hwe-18.04_5.4.0.132.148~18.04.109_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-5.4.0-126-lowlatency_5.4.0-126.142_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-5.4.0-126-lowlatency_5.4.0-126.142~18.04.1_i386.debLinux
Linux kernel (USN-5622-1) linux-image-5.4.0-126-lowlatency_5.4.0-126.142~18.04.1_amd64.debLinux
Linux kernel (USN-5622-1) linux-image-lowlatency-hwe-18.04_5.4.0.132.148~18.04.109_i386.debLinux
Linux kernel (USN-5622-1) linux-image-lowlatency-hwe-18.04_5.4.0.132.148~18.04.109_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-5623-1) linux-image-5.15.0-48-generic_5.15.0-48.54~20.04.1_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-5623-1) linux-image-generic-hwe-20.04_5.15.0.48.54~20.04.18_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-5623-1) linux-image-virtual-hwe-20.04_5.15.0.48.54~20.04.18_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-5623-1) linux-image-5.15.0-48-lowlatency_5.15.0-48.54~20.04.1_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-5623-1) linux-image-lowlatency-hwe-20.04_5.15.0.48.54~20.04.16_amd64.debLinux
Linux kernel for Microsoft Azure CVM cloud systems (USN-5639-1) linux-image-azure-fde_5.4.0.1091.96+cvm1.31_amd64.debLinux
Linux kernel for Microsoft Azure CVM cloud systems (USN-5639-1) linux-image-5.4.0-1091-azure-fde_5.4.0-1091.96+cvm1.1_amd64.debLinux
Linux kernel for Google Cloud Platform (GCP) systems (USN-5647-1) linux-image-gcp-lts-20.04_5.4.0.1089.94_amd64.debLinux
Linux kernel for Google Cloud Platform (GCP) systems (USN-5647-1) linux-image-5.4.0-1089-gcp_5.4.0-1089.97_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-5654-1) linux-image-gke_5.4.0.1083.91_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-5654-1) linux-image-gke-5.4_5.4.0.1083.91_amd64.debLinux
Linux kernel for Google Container Engine (GKE) systems (USN-5654-1) linux-image-5.4.0-1083-gke_5.4.0-1083.89_amd64.debLinux
Linux kernel for Google Cloud Platform (GCP) systems (USN-5660-1) linux-image-gcp_5.4.0.1093.71_amd64.debLinux
Linux kernel for Google Cloud Platform (GCP) systems (USN-5660-1) linux-image-5.4.0-1089-gcp_5.4.0-1089.97~18.04.1_amd64.debLinux
Linux kernel (USN-5669-1) linux-image-kvm_4.15.0.1128.121_amd64.debLinux
Linux kernel (USN-5669-1) linux-image-generic_4.15.0.197.182_i386.debLinux
Linux kernel (USN-5669-1) linux-image-generic_4.15.0.197.182_amd64.debLinux
Linux kernel (USN-5669-1) linux-image-virtual_4.15.0.197.182_i386.debLinux
Linux kernel (USN-5669-1) linux-image-virtual_4.15.0.197.182_amd64.debLinux
Linux kernel (USN-5669-1) linux-image-dell300x_4.15.0.1054.54_amd64.debLinux
Linux kernel (USN-5669-1) linux-image-lowlatency_4.15.0.197.182_i386.debLinux
Linux kernel (USN-5669-1) linux-image-lowlatency_4.15.0.197.182_amd64.debLinux
Linux kernel (USN-5669-1) linux-image-4.15.0-1128-kvm_4.15.0-1128.133_amd64.debLinux
Linux kernel (USN-5669-1) linux-image-oracle-lts-18.04_4.15.0.1107.114_amd64.debLinux
Linux kernel (USN-5669-1) linux-image-4.15.0-1107-oracle_4.15.0-1107.118_amd64.debLinux
Linux kernel (USN-5669-1) linux-image-4.15.0-194-generic_4.15.0-194.205_i386.debLinux
Linux kernel (USN-5669-1) linux-image-4.15.0-194-generic_4.15.0-194.205_amd64.debLinux
Linux kernel (USN-5669-1) linux-image-4.15.0-1054-dell300x_4.15.0-1054.59_amd64.debLinux
Linux kernel (USN-5669-1) linux-image-4.15.0-194-lowlatency_4.15.0-194.205_i386.debLinux
Linux kernel (USN-5669-1) linux-image-4.15.0-194-lowlatency_4.15.0-194.205_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-5678-1) linux-image-aws-lts-18.04_4.15.0.1142.142_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-5678-1) linux-image-gcp-lts-18.04_4.15.0.1137.153_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-5678-1) linux-image-4.15.0-1137-gcp_4.15.0-1137.153_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-5678-1) linux-image-4.15.0-1142-aws_4.15.0-1142.154_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-5687-1) linux-image-azure-lts-18.04_4.15.0.1158.126_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-5687-1) linux-image-4.15.0-1153-azure_4.15.0-1153.168_amd64.debLinux
kernel Security Update (ALAS-2022-1813) kernel-livepatch-4.14.285-215.501-1.0-0.amzn2.x86_64.rpmLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234