Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2023-0179

26
FAUCET Score

CVE-2023-0179 is a high-severity buffer overflow vulnerability in the Netfilter subsystem of the Linux Kernel, affecting distributions like Canonical, Fedora, and Red Hat. This flaw allows a local attacker to leak stack and heap addresses, potentially leading to local privilege escalation to root through arbitrary code execution. While there is no evidence of active exploitation in the wild and no public exploit code in Metasploit or ExploitDB, the vulnerability has garnered significant community discussion, including a proof-of-concept and write-up on Reddit and Hackernews.

Impacted Technologies

VendorProductVersion(s)CPE
>= 5.5.0, < 5.10.164CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.15.89CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.16, < 6.1.7CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
16.04CPE matchmatch criteria
cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
18.04CPE matchmatch criteria
cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.8HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
1.94%
Probability of exploitation in next 30 days
EPSS Percentile
78.1%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0194 is in the 96th percentile among its peer group of 17,070 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (12)

microsoftpatch availablevia msrc
Product: CBL Mariner 2.0 x64Fixed in: 5.15.107.1-2
microsoftpatch availablevia msrc
Product: CBL Mariner 2.0 ARMFixed in: 5.15.107.1-2
microsoftpatch availablevia msrc
Product: cm1 kernel 5.10.177.1-1 on CBL Mariner 1.0Fixed in: 5.10.177.1-1
microsoftpatch availablevia msrc
Product: cbl2 kernel 5.15.107.1-2 on CBL Mariner 2.0Fixed in: 5.15.107.1-2
microsoftpatch availablevia msrc
Product: CBL Mariner 1.0 x64Fixed in: 5.10.177.1-1
microsoftpatch availablevia msrc
Product: CBL Mariner 1.0 ARMFixed in: 5.10.177.1-1
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.0 Extended Update SupportFixed in: kernel-rt-0:5.14.0-70.49.1.rt21.120.el9_0
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.0 Extended Update SupportFixed in: kpatch-patch
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-0:5.14.0-162.18.1.el9_1
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt-0:5.14.0-162.18.1.rt21.181.el9_1
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kpatch-patch
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.0 Extended Update SupportFixed in: kernel-0:5.14.0-70.49.1.el9_0
View patch

Vendor Advisories (3)

microsoft2023-May/CVE-2023-0179

CVE-2023-0179

May 9, 2023
microsoft2023-Mar/CVE-2023-0179Important

A buffer overflow vulnerability was found in the Netfilter subsystem in the Linux Kernel. This issue could allow the leakage of both stack and heap addresses and potentially allow Local Privilege Escalation to the root user via arbitrary code execution.

Mar 14, 2023
redhatCVE-2023-0179Important

kernel: Netfilter integer overflow vulnerability in nft_payload_copy_vlan

Jan 13, 2023

References

packetstormsecurity.com / files/171601/Kernel-Live-Patch-Security-Notice-LNS-0093-1.html
Third Party AdvisoryVDB Entry
bugzilla.redhat.com / show_bug.cgi
Issue TrackingThird Party Advisory
seclists.org / oss-sec/2023/q1/20
ExploitMailing ListThird Party Advisory
security.netapp.com / advisory/ntap-20230511-0003
Third Party Advisory