Amazon Linux 2023 : bpftool, kernel, kernel-devel (ALAS2023-2023-160)

medium Nessus Plugin ID 174575

Synopsis

The remote Amazon Linux 2023 host is missing a security update.

Description

It is, therefore, affected by multiple vulnerabilities as referenced in the ALAS2023-2023-160 advisory.

A flaw was found in the Linux kernel Traffic Control (TC) subsystem. Using a specific networking configuration (redirecting egress packets to ingress using TC action mirred) a local unprivileged user could trigger a CPU soft lockup (ABBA deadlock) when the transport protocol in use (TCP or SCTP) does a retransmission, resulting in a denial of service condition. (CVE-2022-4269)

A NULL pointer dereference has been discovered in the Linux Kernel, in io_file_bitmap_get in io_uring/filetable.c. (CVE-2023-1583)

A use-after-free flaw was found in btrfs_search_slot in fs/btrfs/ctree.c in btrfs in the Linux Kernel.This flaw allows an attacker to crash the system and possibly cause a kernel information lea (CVE-2023-1611)

An out-of-bounds write vulnerability was found in the Linux kernel's SLIMpro I2C device driver. The userspace data->block[0] variable was not capped to a number between 0-255 and was used as the size of a memcpy, possibly writing beyond the end of dma_buffer. This flaw could allow a local privileged user to crash the system or potentially achieve code execution. (CVE-2023-2194)

In the Linux kernel, the following vulnerability has been resolved:

dm crypt: add cond_resched() to dmcrypt_write() (CVE-2023-53051)

In the Linux kernel, the following vulnerability has been resolved:

erspan: do not use skb_mac_header() in ndo_start_xmit() (CVE-2023-53053)

In the Linux kernel, the following vulnerability has been resolved:

perf/x86/amd/core: Always clear status for idx (CVE-2023-53073)

In the Linux kernel, the following vulnerability has been resolved:

xsk: Add missing overflow check in xdp_umem_reg (CVE-2023-53080)

In the Linux kernel, the following vulnerability has been resolved:

nfsd: don't replace page in rq_pages if it's a continuation of last page (CVE-2023-53083)

In the Linux kernel, the following vulnerability has been resolved:

tracing: Do not let histogram values have some modifiers (CVE-2023-53093)

Tenable has extracted the preceding description block directly from the tested product security advisory.

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Run 'dnf update kernel --releasever=2023.0.20230419' to update your system.

See Also

https://alas.aws.amazon.com/AL2023/ALAS-2023-160.html

https://alas.aws.amazon.com/faqs.html

https://alas.aws.amazon.com/cve/html/CVE-2022-4269.html

https://alas.aws.amazon.com/cve/html/CVE-2023-1583.html

https://alas.aws.amazon.com/cve/html/CVE-2023-1611.html

https://alas.aws.amazon.com/cve/html/CVE-2023-2194.html

https://alas.aws.amazon.com/cve/html/CVE-2023-53051.html

https://alas.aws.amazon.com/cve/html/CVE-2023-53053.html

https://alas.aws.amazon.com/cve/html/CVE-2023-53073.html

https://alas.aws.amazon.com/cve/html/CVE-2023-53080.html

https://alas.aws.amazon.com/cve/html/CVE-2023-53083.html

https://alas.aws.amazon.com/cve/html/CVE-2023-53093.html

Plugin Details

Severity: Medium

ID: 174575

File Name: al2023_ALAS2023-2023-160.nasl

Version: 1.4

Type: local

Agent: unix

Published: 4/20/2023

Updated: 6/20/2025

Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Continuous Assessment, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 6.7

CVSS v2

Risk Factor: Medium

Base Score: 6.5

Temporal Score: 4.8

Vector: CVSS2#AV:L/AC:L/Au:M/C:C/I:C/A:C

CVSS Score Source: CVE-2023-2194

CVSS v3

Risk Factor: Medium

Base Score: 6.7

Temporal Score: 5.8

Vector: CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

Vulnerability Information

CPE: p-cpe:/a:amazon:linux:python3-perf, p-cpe:/a:amazon:linux:kernel-libbpf, cpe:/o:amazon:linux:2023, p-cpe:/a:amazon:linux:perf, p-cpe:/a:amazon:linux:kernel-headers, p-cpe:/a:amazon:linux:kernel-tools-devel, p-cpe:/a:amazon:linux:kernel-devel, p-cpe:/a:amazon:linux:bpftool-debuginfo, p-cpe:/a:amazon:linux:kernel-tools-debuginfo, p-cpe:/a:amazon:linux:kernel-livepatch-6.1.23-36.46, p-cpe:/a:amazon:linux:bpftool, p-cpe:/a:amazon:linux:kernel-debuginfo-common-aarch64, p-cpe:/a:amazon:linux:kernel-debuginfo-common-x86_64, p-cpe:/a:amazon:linux:python3-perf-debuginfo, p-cpe:/a:amazon:linux:perf-debuginfo, p-cpe:/a:amazon:linux:kernel-libbpf-static, p-cpe:/a:amazon:linux:kernel-libbpf-devel, p-cpe:/a:amazon:linux:kernel, p-cpe:/a:amazon:linux:kernel-tools, p-cpe:/a:amazon:linux:kernel-debuginfo

Required KB Items: Host/local_checks_enabled, Host/AmazonLinux/release, Host/AmazonLinux/rpm-list

Exploit Ease: No known exploits are available

Patch Publication Date: 4/13/2023

Vulnerability Publication Date: 12/5/2022

Reference Information

CVE: CVE-2022-4269, CVE-2023-1583, CVE-2023-1611, CVE-2023-2194, CVE-2023-53051, CVE-2023-53053, CVE-2023-53073, CVE-2023-53080, CVE-2023-53083, CVE-2023-53093