CVE-2023-52906 | Linux Kernel up to 5.4.228/5.10.163/5.15.88/6.1.6 lib/nlattr.c nla_get_range_unsigned data authenticity (Nessus ID 207884 / WID-SEC-2024-1888)
A vulnerability was found in Linux Kernel up to 5.4.228/5.10.163/5.15.88/6.1.6. It has been declared as problematic. The impacted element is the function nla_get_range_unsigned in the library lib/nlattr.c. Such manipulation leads to insufficient verification of data authenticity.
This vulnerability is traded as CVE-2023-52906. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.