{"schema_version":"1.9.0","id":"CVE-2023-6932","published":"2023-12-19T14:09:15.662Z","modified":"2026-08-12T03:51:43.541232856Z","related":["ALSA-2024:2394","SUSE-SU-2024:0110-1","SUSE-SU-2024:0112-1","SUSE-SU-2024:0113-1","SUSE-SU-2024:0115-1","SUSE-SU-2024:0117-1","SUSE-SU-2024:0118-1","SUSE-SU-2024:0120-1","SUSE-SU-2024:0129-1","SUSE-SU-2024:0141-1","SUSE-SU-2024:0153-1","SUSE-SU-2024:0154-1","SUSE-SU-2024:0156-1","SUSE-SU-2024:0160-1","SUSE-SU-2024:0331-1","SUSE-SU-2024:0339-1","SUSE-SU-2024:0344-1","SUSE-SU-2024:0347-1","SUSE-SU-2024:0348-1","SUSE-SU-2024:0351-1","SUSE-SU-2024:0352-1","SUSE-SU-2024:0358-1","SUSE-SU-2024:0362-1","SUSE-SU-2024:0373-1","SUSE-SU-2024:0376-1","SUSE-SU-2024:0378-1","SUSE-SU-2024:0380-1","SUSE-SU-2024:0389-1","SUSE-SU-2024:0393-1","SUSE-SU-2024:0395-1","SUSE-SU-2024:0409-1","SUSE-SU-2024:0411-1","SUSE-SU-2024:0414-1","SUSE-SU-2024:0418-1","SUSE-SU-2024:0421-1","SUSE-SU-2024:0428-1","SUSE-SU-2024:0429-1"],"summary":"Use-after-free in Linux kernel's ipv4: igmp component","details":"A use-after-free vulnerability in the Linux kernel's ipv4: igmp component can be exploited to achieve local privilege escalation.\n\nA race condition can be exploited to cause a timer be mistakenly registered on a RCU read locked object which is freed by another thread.\n\nWe recommend upgrading past commit e2b706c691905fe78468c361aaabc719d0a496f1.","affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git","events":[{"introduced":"9ee1c939d1cb936b1f98e8d81aeffab57bae46ab"},{"fixed":"0dd3ee31125508cd67f7e7172247f05b7fd1753a"}],"database_specific":{"extracted_events":[{"introduced":"2.6.12"},{"fixed":"6.7"}],"source":"AFFECTED_FIELD"}}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-6932.json"}}],"references":[{"type":"WEB","url":"http://packetstormsecurity.com/files/177029/Kernel-Live-Patch-Security-Notice-LSN-0100-1.html"},{"type":"WEB","url":"https://cert-portal.siemens.com/productcert/html/ssa-265688.html"},{"type":"WEB","url":"https://cert-portal.siemens.com/productcert/html/ssa-398330.html"},{"type":"WEB","url":"https://cert-portal.siemens.com/productcert/html/ssa-613116.html"},{"type":"WEB","url":"https://cert-portal.siemens.com/productcert/html/ssa-794697.html"},{"type":"WEB","url":"https://git.kernel.org"},{"type":"WEB","url":"https://kernel.dance/e2b706c691905fe78468c361aaabc719d0a496f1"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2024/01/msg00004.html"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2024/01/msg00005.html"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/6xxx/CVE-2023-6932.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-6932"},{"type":"FIX","url":"https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit?id=e2b706c691905fe78468c361aaabc719d0a496f1"}],"database_specific":{"cna_assigner":"Google","cwe_ids":["CWE-416"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/6xxx/CVE-2023-6932.json"},"severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}