menu
techminis

A naukri.com initiative

google-web-stories
source image

Dev

3w

read

193

img
dot

Image Credit: Dev

CVE-2023-0386: Linux Kernel Improper Ownership Management Vulnerability

  • CVE ID: CVE-2023-0386
  • Vulnerability Name: Linux Kernel Improper Ownership Management Vulnerability
  • Date Added: 2025-06-17, Due Date: 2025-07-08
  • Description: Linux Kernel has an improper ownership management vulnerability in the OverlayFS subsystem, allowing local users to escalate privileges by copying a capable file from a nosuid mount.
  • Known To Be Used in Ransomware Campaigns: Unknown
  • Action: Apply mitigations as per vendor instructions or discontinue product use if mitigations are not available.
  • Additional Notes: The vulnerability affects a common open-source component. Links for more information: https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=4f11ada10d0a, https://access.redhat.com/security/cve/cve-2023-0386, https://security.netapp.com/advisory/ntap-20230420-0004/, https://nvd.nist.gov/vuln/detail/CVE-2023-0386
  • More CVEs: Common Vulnerabilities & Exposures (CVE) List

Read Full Article

like

11 Likes

For uninterrupted reading, download the app