Loading HuntDB...

GHSA-gxg7-pxwf-9r28

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

An improper input validation flaw was found in the eBPF subsystem in the Linux kernel. The issue occurs due to a lack of proper validation of dynamic pointers within user-supplied eBPF programs prior to executing them. This may allow an attacker with CAP_BPF privileges to escalate privileges and execute arbitrary code in the context of the kernel.

Related CVEs

Key Information

GHSA ID
GHSA-gxg7-pxwf-9r28
Published
October 4, 2023 9:30 PM
Last Modified
August 21, 2024 6:31 PM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 18, 2025 6:25 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.