CyberSec.Space Logo
Back to CVE Browser

CVE-2023-0386

๐Ÿ”ฅ Known Exploited (CISA KEV)HIGH
7.8
CVSS Severity Score
EPSS Score0.0000%
EPSS Percentile0.00th
Published2023-03-22
Last Modified2026-06-17
Data SourcesNVDCISA KEV

Vulnerability Description

A flaw was found in the Linux kernel, where unauthorized access to the execution of the setuid file with capabilities was found in the Linux kernelโ€™s OverlayFS subsystem in how a user copies a capable file from a nosuid mount into another mount. This uid mapping bug allows a local user to escalate their privileges on the system.

Affected Platforms (CPE)

๐Ÿ’ป
Debian

Debian Linux

= 10.0
๐Ÿ’ป
Netapp

H300s Firmware

All versions
๐Ÿ’ป
Netapp

H500s Firmware

All versions
๐Ÿ’ป
Netapp

H700s Firmware

All versions

References & Advisories

Related Vulnerabilities