Arbitrary Code Execution via Use After Free in DevmemIntUnmapPMR

Arbitrary Code Execution via Use After Free in DevmemIntUnmapPMR

CVE-2023-21165 · Severity

In DevmemIntUnmapPMR of devicemem_server.c, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.

Learn more about our Cis Benchmark Audit For Server Software.