{
    "data_version": "4.0",
    "data_type": "CVE",
    "data_format": "MITRE",
    "CVE_data_meta": {
        "ID": "CVE-2023-3812",
        "ASSIGNER": "secalert@redhat.com",
        "STATE": "PUBLIC"
    },
    "description": {
        "description_data": [
            {
                "lang": "eng",
                "value": "An out-of-bounds memory access flaw was found in the Linux kernel\u2019s TUN/TAP device driver functionality in how a user generates a malicious (too big) networking packet when napi frags is enabled. This flaw allows a local user to crash or potentially escalate their privileges on the system."
            }
        ]
    },
    "problemtype": {
        "problemtype_data": [
            {
                "description": [
                    {
                        "lang": "eng",
                        "value": "Out-of-bounds Write",
                        "cweId": "CWE-787"
                    }
                ]
            }
        ]
    },
    "affects": {
        "vendor": {
            "vendor_data": [
                {
                    "vendor_name": "Red Hat",
                    "product": {
                        "product_data": [
                            {
                                "product_name": "Red Hat Enterprise Linux 8",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:4.18.0-513.9.1.rt7.311.el8_9",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        },
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:4.18.0-513.9.1.el8_9",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        },
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "defaultStatus": "unaffected"
                                            }
                                        }
                                    ]
                                }
                            },
                            {
                                "product_name": "Red Hat Enterprise Linux 8.1 Update Services for SAP Solutions",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "defaultStatus": "unaffected"
                                            }
                                        },
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:4.18.0-147.94.1.el8_1",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        }
                                    ]
                                }
                            },
                            {
                                "product_name": "Red Hat Enterprise Linux 8.2 Advanced Update Support",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:4.18.0-193.133.1.el8_2",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        }
                                    ]
                                }
                            },
                            {
                                "product_name": "Red Hat Enterprise Linux 8.2 Telecommunications Update Service",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:4.18.0-193.133.1.rt13.184.el8_2",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        },
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:4.18.0-193.133.1.el8_2",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        }
                                    ]
                                }
                            },
                            {
                                "product_name": "Red Hat Enterprise Linux 8.2 Update Services for SAP Solutions",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "defaultStatus": "unaffected"
                                            }
                                        },
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:4.18.0-193.133.1.el8_2",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        }
                                    ]
                                }
                            },
                            {
                                "product_name": "Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:4.18.0-305.120.1.el8_4",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        }
                                    ]
                                }
                            },
                            {
                                "product_name": "Red Hat Enterprise Linux 8.4 Telecommunications Update Service",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:4.18.0-305.120.1.rt7.196.el8_4",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        },
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:4.18.0-305.120.1.el8_4",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        }
                                    ]
                                }
                            },
                            {
                                "product_name": "Red Hat Enterprise Linux 8.4 Update Services for SAP Solutions",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:4.18.0-305.120.1.el8_4",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        },
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "defaultStatus": "unaffected"
                                            }
                                        }
                                    ]
                                }
                            },
                            {
                                "product_name": "Red Hat Enterprise Linux 8.6 Extended Update Support",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "defaultStatus": "unaffected"
                                            }
                                        },
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:4.18.0-372.87.1.el8_6",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        }
                                    ]
                                }
                            },
                            {
                                "product_name": "Red Hat Enterprise Linux 8.8 Extended Update Support",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "defaultStatus": "unaffected"
                                            }
                                        },
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:4.18.0-477.43.1.el8_8",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        }
                                    ]
                                }
                            },
                            {
                                "product_name": "Red Hat Enterprise Linux 9",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:5.14.0-362.18.1.el9_3",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        },
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "defaultStatus": "unaffected"
                                            }
                                        },
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:5.14.0-362.18.1.el9_3",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        },
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "defaultStatus": "affected"
                                            }
                                        }
                                    ]
                                }
                            },
                            {
                                "product_name": "Red Hat Enterprise Linux 9.0 Extended Update Support",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:5.14.0-70.80.1.el9_0",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        },
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:5.14.0-70.80.1.rt21.151.el9_0",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        },
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "defaultStatus": "unaffected"
                                            }
                                        }
                                    ]
                                }
                            },
                            {
                                "product_name": "Red Hat Enterprise Linux 9.2 Extended Update Support",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:5.14.0-284.40.1.el9_2",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        },
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:5.14.0-284.40.1.rt14.325.el9_2",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        },
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "defaultStatus": "unaffected"
                                            }
                                        }
                                    ]
                                }
                            },
                            {
                                "product_name": "Red Hat Virtualization 4 for Red Hat Enterprise Linux 8",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "versions": [
                                                    {
                                                        "version": "0:4.18.0-372.87.1.el8_6",
                                                        "lessThan": "*",
                                                        "versionType": "rpm",
                                                        "status": "unaffected"
                                                    }
                                                ],
                                                "defaultStatus": "affected"
                                            }
                                        }
                                    ]
                                }
                            },
                            {
                                "product_name": "Red Hat Enterprise Linux 6",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "defaultStatus": "unaffected"
                                            }
                                        }
                                    ]
                                }
                            },
                            {
                                "product_name": "Red Hat Enterprise Linux 7",
                                "version": {
                                    "version_data": [
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "defaultStatus": "unaffected"
                                            }
                                        },
                                        {
                                            "version_value": "not down converted",
                                            "x_cve_json_5_version_data": {
                                                "defaultStatus": "unaffected"
                                            }
                                        }
                                    ]
                                }
                            }
                        ]
                    }
                }
            ]
        }
    },
    "references": {
        "reference_data": [
            {
                "url": "https://access.redhat.com/errata/RHSA-2023:6799",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2023:6799"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2023:6813",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2023:6813"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2023:7370",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2023:7370"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2023:7379",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2023:7379"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2023:7382",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2023:7382"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2023:7389",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2023:7389"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2023:7411",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2023:7411"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2023:7418",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2023:7418"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2023:7548",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2023:7548"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2023:7549",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2023:7549"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2023:7554",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2023:7554"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2024:0340",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2024:0340"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2024:0378",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2024:0378"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2024:0412",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2024:0412"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2024:0461",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2024:0461"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2024:0554",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2024:0554"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2024:0562",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2024:0562"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2024:0563",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2024:0563"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2024:0575",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2024:0575"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2024:0593",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2024:0593"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2024:1961",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2024:1961"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2024:2006",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2024:2006"
            },
            {
                "url": "https://access.redhat.com/errata/RHSA-2024:2008",
                "refsource": "MISC",
                "name": "https://access.redhat.com/errata/RHSA-2024:2008"
            },
            {
                "url": "https://access.redhat.com/security/cve/CVE-2023-3812",
                "refsource": "MISC",
                "name": "https://access.redhat.com/security/cve/CVE-2023-3812"
            },
            {
                "url": "https://bugzilla.redhat.com/show_bug.cgi?id=2224048",
                "refsource": "MISC",
                "name": "https://bugzilla.redhat.com/show_bug.cgi?id=2224048"
            },
            {
                "url": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=363a5328f4b0",
                "refsource": "MISC",
                "name": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=363a5328f4b0"
            }
        ]
    },
    "work_around": [
        {
            "lang": "en",
            "value": "To mitigate this issue, prevent the tun module from being loaded. Please see https://access.redhat.com/solutions/41278 for how to blacklist a kernel module to prevent it from loading automatically."
        }
    ],
    "impact": {
        "cvss": [
            {
                "attackComplexity": "LOW",
                "attackVector": "LOCAL",
                "availabilityImpact": "HIGH",
                "baseScore": 7.8,
                "baseSeverity": "HIGH",
                "confidentialityImpact": "HIGH",
                "integrityImpact": "HIGH",
                "privilegesRequired": "LOW",
                "scope": "UNCHANGED",
                "userInteraction": "NONE",
                "vectorString": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                "version": "3.1"
            }
        ]
    }
}