Kernel: ipv4: null pointer dereference in ipv4_send_dest_unreach()
Vulnerability Description
A NULL pointer dereference flaw was found in the Linux kernel ipv4 stack. The socket buffer (skb) was assumed to be associated with a device before calling __ip_options_compile, which is not always the case if the skb is re-routed by ipvs. This issue may allow a local user with CAP_NET_ADMIN privileges to crash the system.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-42754
Credits & Attribution
No credits recorded in the NVD database.
References
More from Red Hat
View All →Affected Vendor
Red Hat
View all reports →