/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CVE-2023-3772

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2023-3772

Severity

4.4

Medium

CVSS V3

Description

A flaw was found in the Linux kernel’s IP framework for transforming packets (XFRM subsystem). This issue may allow a malicious user with CAP_NET_ADMIN privileges to directly dereference a NULL pointer in xfrm_update_ae_params(), leading to a possible kernel crash and denial of service.

References

Affected packages


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing