Sept. 20, 2023, 9:15 p.m. |

National Vulnerability Database web.nvd.nist.gov

In the Unbreakable Enterprise Kernel (UEK), the RDS module in UEK has two setsockopt(2) options, RDS_CONN_RESET and RDS6_CONN_RESET, that are not re-entrant. A malicious local user with CAP_NET_ADMIN can use this to crash the kernel. CVSS 3.1 Base Score 5.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).

availability base crash cve cvss enterprise kernel linux local malicious options rds score

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Information Security Compliance Analyst

@ Media.Monks | Buenos Aires

Security Engineer, Threat Research

@ ExtraHop | Remote

Security Operations Engineer

@ Skydio | San Mateo, California, United States

GN - Tech Strategy & Advisory -Cyber Security - Consultant

@ Accenture | Bengaluru, BDC7A

GDS Consulting - Cybersecurity Senior Consultant

@ EY | Taguig, PH, 1634