CVE-2023-28736

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
11/08/2023
Last modified:
07/11/2023

Description

Buffer overflow in some Intel(R) SSD Tools software before version mdadm-4.2-rc2 may allow a privileged user to potentially enable escalation of privilege via local access.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mdadm_project:mdadm:*:*:*:*:*:*:*:* 4.2 (excluding)
cpe:2.3:a:mdadm_project:mdadm:4.2:rc1:*:*:*:*:*:*