CVE-2024-47682

Description

In the Linux kernel, the following vulnerability has been resolved:scsi: sd: Fix off-by-one error in sd_read_block_characteristics()Ff the device returns page 0xb1 with length 8 (happens with qemu v2.x, forexample), sd_read_block_characteristics() may attempt an out-of-boundsmemory access when accessing the zoned field at offset 8.

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.014

Associated Vulnerability

VulnerabilityOS Platform
SUSE-SU-2024:3984-1(Public Cloud Module 15-SP6) kernel-azure-6.4.0-150600.8.17.2.x86_64.rpmLinux
SUSE-SU-2024:3984-1(Public Cloud Module 15-SP6) kernel-azure-debuginfo-6.4.0-150600.8.17.2.x86_64.rpmLinux
SUSE-SU-2024:3984-1(Public Cloud Module 15-SP6) kernel-azure-debugsource-6.4.0-150600.8.17.2.x86_64.rpmLinux
SUSE-SU-2024:3984-1(Public Cloud Module 15-SP6) kernel-azure-devel-6.4.0-150600.8.17.2.x86_64.rpmLinux
SUSE-SU-2024:3984-1(Public Cloud Module 15-SP6) kernel-azure-devel-debuginfo-6.4.0-150600.8.17.2.x86_64.rpmLinux
SUSE-SU-2024:3984-1(Public Cloud Module 15-SP6) kernel-devel-azure-6.4.0-150600.8.17.1.noarch.rpmLinux
SUSE-SU-2024:3984-1(Public Cloud Module 15-SP6) kernel-source-azure-6.4.0-150600.8.17.1.noarch.rpmLinux
SUSE-SU-2024:3984-1(Public Cloud Module 15-SP6) kernel-syms-azure-6.4.0-150600.8.17.1.x86_64.rpmLinux
SUSE-SU-2024:4318-1(Basesystem Module 15-SP6) kernel-default-6.4.0-150600.23.30.1.x86_64.rpmLinux
SUSE-SU-2024:4318-1(Basesystem Module 15-SP6) kernel-default-base-6.4.0-150600.23.30.1.150600.12.12.6.x86_64.rpmLinux
SUSE-SU-2024:4318-1(Basesystem Module 15-SP6) kernel-default-debuginfo-6.4.0-150600.23.30.1.x86_64.rpmLinux
SUSE-SU-2024:4318-1(Basesystem Module 15-SP6) kernel-default-debugsource-6.4.0-150600.23.30.1.x86_64.rpmLinux
SUSE-SU-2024:4318-1(Basesystem Module 15-SP6) kernel-default-devel-6.4.0-150600.23.30.1.x86_64.rpmLinux
SUSE-SU-2024:4318-1(Basesystem Module 15-SP6) kernel-default-devel-debuginfo-6.4.0-150600.23.30.1.x86_64.rpmLinux
SUSE-SU-2024:4318-1(Basesystem Module 15-SP6) kernel-devel-6.4.0-150600.23.30.1.noarch.rpmLinux
SUSE-SU-2024:4318-1(Development Tools Module 15-SP6) kernel-docs-6.4.0-150600.23.30.1.noarch.rpmLinux
SUSE-SU-2024:4318-1(Legacy Module 15-SP6) reiserfs-kmp-default-debuginfo-6.4.0-150600.23.30.1.x86_64.rpmLinux
SUSE-SU-2024:4318-1(Basesystem Module 15-SP6) kernel-macros-6.4.0-150600.23.30.1.noarch.rpmLinux
SUSE-SU-2024:4318-1(Development Tools Module 15-SP6) kernel-obs-build-6.4.0-150600.23.30.1.x86_64.rpmLinux
SUSE-SU-2024:4318-1(Development Tools Module 15-SP6) kernel-obs-build-debugsource-6.4.0-150600.23.30.1.x86_64.rpmLinux
SUSE-SU-2024:4318-1(Development Tools Module 15-SP6) kernel-source-6.4.0-150600.23.30.1.noarch.rpmLinux
SUSE-SU-2024:4318-1(Development Tools Module 15-SP6) kernel-syms-6.4.0-150600.23.30.1.x86_64.rpmLinux
SUSE-SU-2024:4318-1(Legacy Module 15-SP6) reiserfs-kmp-default-6.4.0-150600.23.30.1.x86_64.rpmLinux
SUSE-SU-2024:4364-1(Basesystem Module 15-SP5) kernel-default-5.14.21-150500.55.88.1.x86_64.rpmLinux
SUSE-SU-2024:4364-1(Basesystem Module 15-SP5) kernel-default-base-5.14.21-150500.55.88.1.150500.6.39.4.x86_64.rpmLinux
SUSE-SU-2024:4364-1(Basesystem Module 15-SP5) kernel-default-debuginfo-5.14.21-150500.55.88.1.x86_64.rpmLinux
SUSE-SU-2024:4364-1(Basesystem Module 15-SP5) kernel-default-debugsource-5.14.21-150500.55.88.1.x86_64.rpmLinux
SUSE-SU-2024:4364-1(Basesystem Module 15-SP5) kernel-default-devel-5.14.21-150500.55.88.1.x86_64.rpmLinux
SUSE-SU-2024:4364-1(Basesystem Module 15-SP5) kernel-default-devel-debuginfo-5.14.21-150500.55.88.1.x86_64.rpmLinux
SUSE-SU-2024:4364-1(Basesystem Module 15-SP5) kernel-devel-5.14.21-150500.55.88.1.noarch.rpmLinux
SUSE-SU-2024:4364-1(Development Tools Module 15-SP5) kernel-docs-5.14.21-150500.55.88.1.noarch.rpmLinux
SUSE-SU-2024:4364-1(Basesystem Module 15-SP5) kernel-macros-5.14.21-150500.55.88.1.noarch.rpmLinux
SUSE-SU-2024:4364-1(Development Tools Module 15-SP5) kernel-obs-build-5.14.21-150500.55.88.1.x86_64.rpmLinux
SUSE-SU-2024:4364-1(Development Tools Module 15-SP5) kernel-obs-build-debugsource-5.14.21-150500.55.88.1.x86_64.rpmLinux
SUSE-SU-2024:4364-1(Development Tools Module 15-SP5) kernel-source-5.14.21-150500.55.88.1.noarch.rpmLinux
SUSE-SU-2024:4364-1(Development Tools Module 15-SP5) kernel-syms-5.14.21-150500.55.88.1.x86_64.rpmLinux
SUSE-SU-2024:4376-1(Public Cloud Module 15-SP5) kernel-azure-5.14.21-150500.33.75.1.x86_64.rpmLinux
SUSE-SU-2024:4376-1(Public Cloud Module 15-SP5) kernel-azure-debuginfo-5.14.21-150500.33.75.1.x86_64.rpmLinux
SUSE-SU-2024:4376-1(Public Cloud Module 15-SP5) kernel-azure-debugsource-5.14.21-150500.33.75.1.x86_64.rpmLinux
SUSE-SU-2024:4376-1(Public Cloud Module 15-SP5) kernel-azure-devel-5.14.21-150500.33.75.1.x86_64.rpmLinux
SUSE-SU-2024:4376-1(Public Cloud Module 15-SP5) kernel-azure-devel-debuginfo-5.14.21-150500.33.75.1.x86_64.rpmLinux
SUSE-SU-2024:4376-1(Public Cloud Module 15-SP5) kernel-devel-azure-5.14.21-150500.33.75.1.noarch.rpmLinux
SUSE-SU-2024:4376-1(Public Cloud Module 15-SP5) kernel-source-azure-5.14.21-150500.33.75.1.noarch.rpmLinux
SUSE-SU-2024:4376-1(Public Cloud Module 15-SP5) kernel-syms-azure-5.14.21-150500.33.75.1.x86_64.rpmLinux
Linux kernel (USN-7276-1) linux-image-6.11.0-1010-lowlatency_6.11.0-1010.11_amd64.debLinux
Linux kernel (USN-7276-1) linux-image-6.11.0-18-generic_6.11.0-18.18_amd64.debLinux
Linux kernel (USN-7276-1) linux-image-generic_6.11.0-18.18_amd64.debLinux
Linux kernel (USN-7276-1) linux-image-generic-hwe-24.04_6.11.0-18.18_amd64.debLinux
Linux kernel (USN-7276-1) linux-image-lowlatency_6.11.0-1010.11_amd64.debLinux
Linux kernel (USN-7276-1) linux-image-oem-24.04_6.11.0-18.18_amd64.debLinux
Linux kernel (USN-7276-1) linux-image-oem-24.04a_6.11.0-18.18_amd64.debLinux
Linux kernel (USN-7276-1) linux-image-virtual_6.11.0-18.18_amd64.debLinux
Linux kernel (USN-7276-1) linux-image-virtual-hwe-24.04_6.11.0-18.18_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7277-1) linux-image-6.11.0-1005-realtime_6.11.0-1005.5_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7277-1) linux-image-6.11.0-1009-aws_6.11.0-1009.10_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7277-1) linux-image-6.11.0-1009-azure_6.11.0-1009.9_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7277-1) linux-image-6.11.0-1009-azure-fde_6.11.0-1009.9_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7277-1) linux-image-6.11.0-1009-gcp_6.11.0-1009.9_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7277-1) linux-image-6.11.0-1011-oracle_6.11.0-1011.12_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7277-1) linux-image-aws_6.11.0-1009.10_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7277-1) linux-image-azure_6.11.0-1009.9_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7277-1) linux-image-azure-fde_6.11.0-1009.9_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7277-1) linux-image-gcp_6.11.0-1009.9_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7277-1) linux-image-oracle_6.11.0-1011.12_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7277-1) linux-image-realtime_6.11.0-1005.5_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7277-1) linux-image-realtime-hwe-24.04_6.11.0-1005.5_amd64.debLinux
Linux kernel (USN-7301-1) linux-image-6.8.0-54-lowlatency_6.8.0-54.56.1~22.04.1_amd64.debLinux
Linux kernel (USN-7301-1) linux-image-lowlatency-hwe-22.04_6.8.0-54.56.1~22.04.1_amd64.debLinux
Linux kernel for NVIDIA systems (USN-7303-1) linux-image-6.8.0-1022-nvidia_6.8.0-1022.25~22.04.2_amd64.debLinux
Linux kernel for NVIDIA systems (USN-7303-1) linux-image-nvidia-6.8_6.8.0-1022.25~22.04.2_amd64.debLinux
Linux kernel for NVIDIA systems (USN-7303-1) linux-image-nvidia-hwe-22.04_6.8.0-1022.25~22.04.2_amd64.debLinux
Linux kernel (USN-7301-1) linux-image-6.8.0-54-generic_6.8.0-54.56_amd64.debLinux
Linux kernel (USN-7301-1) linux-image-6.8.0-54-lowlatency_6.8.0-54.56.1_amd64.debLinux
Linux kernel (USN-7301-1) linux-image-generic_6.8.0-54.56_amd64.debLinux
Linux kernel (USN-7301-1) linux-image-kvm_6.8.0-54.56_amd64.debLinux
Linux kernel (USN-7301-1) linux-image-lowlatency_6.8.0-54.56.1_amd64.debLinux
Linux kernel (USN-7301-1) linux-image-virtual_6.8.0-54.56_amd64.debLinux
Linux kernel for NVIDIA systems (USN-7303-1) linux-image-6.8.0-1022-nvidia_6.8.0-1022.25_amd64.debLinux
Linux kernel for NVIDIA systems (USN-7303-1) linux-image-6.8.0-1022-nvidia-lowlatency_6.8.0-1022.25.2_amd64.debLinux
Linux kernel for NVIDIA systems (USN-7303-1) linux-image-nvidia_6.8.0-1022.25_amd64.debLinux
Linux kernel for NVIDIA systems (USN-7303-1) linux-image-nvidia-lowlatency_6.8.0-1022.25.2_amd64.debLinux
Linux kernel for Google Cloud Platform (GCP) systems (USN-7304-1) linux-image-6.8.0-1006-gkeop_6.8.0-1006.8_amd64.debLinux
Linux kernel for Google Cloud Platform (GCP) systems (USN-7304-1) linux-image-6.8.0-1019-gke_6.8.0-1019.23_amd64.debLinux
Linux kernel for Google Cloud Platform (GCP) systems (USN-7304-1) linux-image-6.8.0-1024-gcp_6.8.0-1024.26_amd64.debLinux
Linux kernel for Google Cloud Platform (GCP) systems (USN-7304-1) linux-image-gcp_6.8.0-1024.26_amd64.debLinux
Linux kernel for Google Cloud Platform (GCP) systems (USN-7304-1) linux-image-gcp-lts-24.04_6.8.0-1024.26_amd64.debLinux
Linux kernel for Google Cloud Platform (GCP) systems (USN-7304-1) linux-image-gke_6.8.0-1019.23_amd64.debLinux
Linux kernel for Google Cloud Platform (GCP) systems (USN-7304-1) linux-image-gkeop_6.8.0-1006.8_amd64.debLinux
Linux kernel for Google Cloud Platform (GCP) systems (USN-7304-1) linux-image-gkeop-6.8_6.8.0-1006.8_amd64.debLinux
Linux kernel for Oracle Cloud systems (USN-7303-2) linux-image-6.8.0-1020-oracle_6.8.0-1020.21_amd64.debLinux
Linux kernel for Oracle Cloud systems (USN-7303-2) linux-image-6.8.0-1020-oracle_6.8.0-1020.21~22.04.1_amd64.debLinux
Linux kernel for Oracle Cloud systems (USN-7303-2) linux-image-oracle_6.8.0-1020.21_amd64.debLinux
Linux kernel for Oracle Cloud systems (USN-7303-2) linux-image-oracle_6.8.0-1020.21~22.04.1_amd64.debLinux
Linux kernel for Oracle Cloud systems (USN-7303-2) linux-image-oracle-lts-24.04_6.8.0-1020.21_amd64.debLinux
Linux kernel for OEM systems (USN-7310-1) linux-image-6.11.0-1015-oem_6.11.0-1015.15_amd64.debLinux
Linux kernel for OEM systems (USN-7310-1) linux-image-oem-24.04b_6.11.0-1015.15_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7311-1) linux-image-6.8.0-1023-aws_6.8.0-1023.25_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7311-1) linux-image-6.8.0-1023-aws_6.8.0-1023.25~22.04.1_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7311-1) linux-image-aws_6.8.0-1023.25_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7311-1) linux-image-aws_6.8.0-1023.25~22.04.1_amd64.debLinux
Linux kernel for Amazon Web Services (AWS) systems (USN-7311-1) linux-image-aws-lts-24.04_6.8.0-1023.25_amd64.debLinux
Linux kernel for Raspberry Pi systems (USN-7303-3) linux-image-6.8.0-1024-gcp_6.8.0-1024.26~22.04.1_amd64.debLinux
Linux kernel for Raspberry Pi systems (USN-7303-3) linux-image-gcp_6.8.0-1024.26~22.04.1_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7384-1) linux-image-6.8.0-1025-azure_6.8.0-1025.30_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7384-1) linux-image-6.8.0-1025-azure-fde_6.8.0-1025.30_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7384-1) linux-image-azure-fde-lts-24.04_6.8.0-1025.30_amd64.debLinux
Linux kernel for Microsoft Azure Cloud systems (USN-7384-1) linux-image-azure-lts-24.04_6.8.0-1025.30_amd64.debLinux
Linux kernel for IBM cloud systems (USN-7385-1) linux-image-6.8.0-1022-ibm_6.8.0-1022.22_amd64.debLinux
Linux kernel for IBM cloud systems (USN-7385-1) linux-image-ibm_6.8.0-1022.22_amd64.debLinux
Linux kernel for IBM cloud systems (USN-7385-1) linux-image-ibm-classic_6.8.0-1022.22_amd64.debLinux
Linux kernel for IBM cloud systems (USN-7385-1) linux-image-ibm-lts-24.04_6.8.0-1022.22_amd64.debLinux
Linux kernel for OEM systems (USN-7386-1) linux-image-6.8.0-1024-oem_6.8.0-1024.24_amd64.debLinux
Linux kernel for OEM systems (USN-7386-1) linux-image-oem-24.04_6.8.0-1024.24_amd64.debLinux
Linux kernel for OEM systems (USN-7386-1) linux-image-oem-24.04a_6.8.0-1024.24_amd64.debLinux
Linux kernel for Microsoft Azure cloud systems (USN-7384-2) linux-image-6.8.0-1025-azure_6.8.0-1025.30~22.04.1_amd64.debLinux
Linux kernel for Microsoft Azure cloud systems (USN-7384-2) linux-image-6.8.0-1025-azure-fde_6.8.0-1025.30~22.04.1_amd64.debLinux
Linux kernel for Microsoft Azure cloud systems (USN-7384-2) linux-image-azure_6.8.0-1025.30~22.04.1_amd64.debLinux
Linux kernel for Microsoft Azure cloud systems (USN-7384-2) linux-image-azure-fde_6.8.0-1025.30~22.04.1_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-7403-1) linux-image-6.8.0-57-generic_6.8.0-57.59~22.04.1_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-7403-1) linux-image-generic-hwe-22.04_6.8.0-57.59~22.04.1_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-7403-1) linux-image-oem-22.04_6.8.0-57.59~22.04.1_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-7403-1) linux-image-oem-22.04a_6.8.0-57.59~22.04.1_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-7403-1) linux-image-oem-22.04b_6.8.0-57.59~22.04.1_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-7403-1) linux-image-oem-22.04c_6.8.0-57.59~22.04.1_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-7403-1) linux-image-oem-22.04d_6.8.0-57.59~22.04.1_amd64.debLinux
Linux hardware enablement (HWE) kernel (USN-7403-1) linux-image-virtual-hwe-22.04_6.8.0-57.59~22.04.1_amd64.debLinux
kernel Security Update (ALAS2023-2025-794) kernel-livepatch-6.1.115-126.197-1.0-0.amzn2023.x86_64.rpmLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234