CVE-2023-0179: Canonical Ubuntu Linux
High severity, CVSS 7.8. EPSS: 1.9% chance of exploitation in the next 30 days.
A buffer overflow vulnerability was found in the Netfilter subsystem in the Linux Kernel. This issue could allow the leakage of both stack and heap addresses, and potentially allow Local Privilege Escalation to the root user via arbitrary code execution.
Affected products
- Canonical Ubuntu Linux: version 16.04 only; version 18.04 only; version 20.04 only; version 22.04 only
- Fedoraproject Fedora: version 36 only; version 37 only
- Linux Linux Kernel: from 5.5.0, before 5.10.164 (fixed in 5.10.164); from 5.11, before 5.15.89 (fixed in 5.15.89); from 5.16, before 6.1.7 (fixed in 6.1.7)
- Red Hat Codeready Linux Builder: affected versions not specified
- Red Hat Enterprise Linux: version 9.0 only
- Red Hat Enterprise Linux Eus: version 9.0 only
- Red Hat Enterprise Linux For IBM Z Systems: version 9.0 only
- Red Hat Enterprise Linux For Power Little Endian: version 9.0 only
- Red Hat Enterprise Linux For Power Little Endian Eus: version 9.0 only
- Red Hat Enterprise Linux For Real Time: version 9.0 only
- Red Hat Enterprise Linux For Real Time For Nfv: version 9.0 only
- Red Hat Enterprise Linux Server: version 9.0 only
- Red Hat Enterprise Linux Server For Power Little Endian Update Services For SAP Solutions: version 9.0 only
Published 2023-03-27. Last modified 2026-06-17.