CVE-2023-4732

A flaw was found in pfn_swap_entry_to_page in memory management subsystem in the Linux Kernel. In this flaw, an attacker with a local user privilege may cause a denial of service problem due to a BUG statement referencing pmd_t x.
Configurations

Configuration 1 (hide)

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:redhat:codeready_linux_builder:8.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:codeready_linux_builder_for_arm64:8.0_aarch64:*:*:*:*:*:*:*
cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian:8.0_ppc64le:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_for_arm_64:8.0_aarch64:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:8.0_s390x:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian:8.0_ppc64le:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_for_real_time:8.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_for_real_time_for_nfv:8.0:*:*:*:*:*:*:*

History

21 Nov 2024, 08:35

Type Values Removed Values Added
References () https://access.redhat.com/errata/RHSA-2023:6901 - Third Party Advisory () https://access.redhat.com/errata/RHSA-2023:6901 - Third Party Advisory
References () https://access.redhat.com/errata/RHSA-2023:7077 - Third Party Advisory () https://access.redhat.com/errata/RHSA-2023:7077 - Third Party Advisory
References () https://access.redhat.com/errata/RHSA-2023:7539 - Third Party Advisory () https://access.redhat.com/errata/RHSA-2023:7539 - Third Party Advisory
References () https://access.redhat.com/errata/RHSA-2024:0412 - () https://access.redhat.com/errata/RHSA-2024:0412 -
References () https://access.redhat.com/security/cve/CVE-2023-4732 - Third Party Advisory () https://access.redhat.com/security/cve/CVE-2023-4732 - Third Party Advisory
References () https://bugzilla.redhat.com/show_bug.cgi?id=2236982 - Issue Tracking, Third Party Advisory () https://bugzilla.redhat.com/show_bug.cgi?id=2236982 - Issue Tracking, Third Party Advisory

25 Jan 2024, 20:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2024:0412 -

21 Jan 2024, 02:17

Type Values Removed Values Added
CPE cpe:2.3:a:redhat:codeready_linux_builder:8.0:*:*:*:*:*:*:*
cpe:2.3:a:redhat:codeready_linux_builder_for_arm64:8.0_aarch64:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_for_real_time:8.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_for_arm_64:8.0_aarch64:*:*:*:*:*:*:*
cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian:8.0_ppc64le:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian:8.0_ppc64le:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:8.0_s390x:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_for_real_time_for_nfv:8.0:*:*:*:*:*:*:*
References () https://access.redhat.com/errata/RHSA-2023:6901 - () https://access.redhat.com/errata/RHSA-2023:6901 - Third Party Advisory
References () https://access.redhat.com/errata/RHSA-2023:7077 - () https://access.redhat.com/errata/RHSA-2023:7077 - Third Party Advisory
References () https://access.redhat.com/errata/RHSA-2023:7539 - () https://access.redhat.com/errata/RHSA-2023:7539 - Third Party Advisory
First Time Redhat enterprise Linux For Real Time For Nfv
Redhat enterprise Linux For Ibm Z Systems
Redhat codeready Linux Builder
Redhat codeready Linux Builder For Power Little Endian
Redhat enterprise Linux For Arm 64
Redhat enterprise Linux For Power Little Endian
Redhat enterprise Linux For Real Time
Redhat codeready Linux Builder For Arm64

28 Nov 2023, 18:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2023:7539 -

14 Nov 2023, 21:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2023:6901 -
  • () https://access.redhat.com/errata/RHSA-2023:7077 -

05 Oct 2023, 16:58

Type Values Removed Values Added
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.7
References (MISC) https://access.redhat.com/security/cve/CVE-2023-4732 - (MISC) https://access.redhat.com/security/cve/CVE-2023-4732 - Third Party Advisory
References (MISC) https://bugzilla.redhat.com/show_bug.cgi?id=2236982 - (MISC) https://bugzilla.redhat.com/show_bug.cgi?id=2236982 - Issue Tracking, Third Party Advisory
First Time Redhat
Linux
Linux linux Kernel
Redhat enterprise Linux
CWE CWE-362

04 Oct 2023, 12:15

Type Values Removed Values Added
Summary A flaw was found in the Linux Kernel's memory management subsytem. A task exits and releases a 2MB page in a vma (vm_area_struct) and hits the BUG statement in pfn_swap_entry_to_page() referencing pmd_t x. A flaw was found in pfn_swap_entry_to_page in memory management subsystem in the Linux Kernel. In this flaw, an attacker with a local user privilege may cause a denial of service problem due to a BUG statement referencing pmd_t x.

03 Oct 2023, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-10-03 17:15

Updated : 2024-11-21 08:35


NVD link : CVE-2023-4732

Mitre link : CVE-2023-4732

CVE.ORG link : CVE-2023-4732


JSON object : View

Products Affected

redhat

  • enterprise_linux_for_ibm_z_systems
  • enterprise_linux_for_power_little_endian
  • enterprise_linux_for_real_time_for_nfv
  • enterprise_linux_for_arm_64
  • codeready_linux_builder_for_power_little_endian
  • codeready_linux_builder_for_arm64
  • enterprise_linux
  • codeready_linux_builder
  • enterprise_linux_for_real_time

linux

  • linux_kernel
CWE
CWE-366

Race Condition within a Thread

CWE-362

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')