Database/Kernel, userspace & hypervisor
Linux kernel (AF_UNIX): Use-after-free in unix_stream_sendpage - local privilege escalation, no capabilities needed
CVE-2023-4622Kernel, userspace & hypervisorcurated
Impact
Use-after-free in unix_stream_sendpage - local privilege escalation, no capabilities needed
Who can reach it
Any tenant process in a container
What to do
Livepatchable; otherwise drain + reboot. Note this one needs no CAP_NET_ADMIN, so userns hardening does not help
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.