VYPR
Unrated severityCISA KEVNVD Advisory· Published Mar 22, 2023· Updated Oct 21, 2025

CVE-2023-0386

CVE-2023-0386

Description

A flaw was found in the Linux kernel, where unauthorized access to the execution of the setuid file with capabilities was found in the Linux kernel’s OverlayFS subsystem in how a user copies a capable file from a nosuid mount into another mount. This uid mapping bug allows a local user to escalate their privileges on the system.

Affected products

1
  • Linux/Linux kerneldescription

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

6

News mentions

0

No linked articles in our index yet.