Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2023-5178

31
FAUCET Score

CVE-2023-5178 is a high-severity use-after-free vulnerability in the Linux kernel's NVMe/TCP subsystem, specifically within the drivers/nvme/target/tcp.c file. This flaw affects Linux, NetApp, and Red Hat products. The vulnerability carries a CVSS score of 8.8 (High) due to its network attack vector, low attack complexity, and potential for remote code execution or local privilege escalation, leading to high impacts on confidentiality, integrity, and availability. Currently, there is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or inclusion in the CISA KEV catalog, though it has garnered some community discussion and media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
>= 5.0, < 5.4.260CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.5, < 5.10.199CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.15.137CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.16, < 6.1.60CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.2, < 6.5.9CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

8.8HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
2.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
9.14%
Probability of exploitation in next 30 days
EPSS Percentile
94.8%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0914 is in the 94th percentile among its peer group of 17,844 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (31)

microsoftpatch availablevia msrc
Product: cbl2 hyperv-daemons 5.15.137.1-1 on CBL Mariner 2.0Fixed in: 5.15.137.1-1
microsoftpatch availablevia msrc
Product: 18253-16823Fixed in: 5.15.138.1-4
microsoftpatch availablevia msrc
Product: 18260-16823Fixed in: 5.15.137.1-1
microsoftpatch availablevia msrc
Product: cbl2 kernel 5.15.138.1-4 on CBL Mariner 2.0Fixed in: 5.15.138.1-4
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.2 Telecommunications Update ServiceFixed in: kernel-rt-0:4.18.0-193.128.1.rt13.179.el8_2
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.2 Telecommunications Update ServiceFixed in: kernel-0:4.18.0-193.128.1.el8_2
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.2 Update Services for SAP SolutionsFixed in: kernel-0:4.18.0-193.128.1.el8_2
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.2 Update Services for SAP SolutionsFixed in: kpatch-patch
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update SupportFixed in: kernel-0:4.18.0-305.114.1.el8_4
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.4 Telecommunications Update ServiceFixed in: kernel-rt-0:4.18.0-305.114.1.rt7.190.el8_4
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.4 Telecommunications Update ServiceFixed in: kernel-0:4.18.0-305.114.1.el8_4
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.4 Update Services for SAP SolutionsFixed in: kernel-0:4.18.0-305.114.1.el8_4
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.4 Update Services for SAP SolutionsFixed in: kpatch-patch
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.6 Extended Update SupportFixed in: kpatch-patch
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.6 Extended Update SupportFixed in: kernel-0:4.18.0-372.87.1.el8_6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-rt-0:4.18.0-513.9.1.rt7.311.el8_9
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.8 Extended Update SupportFixed in: kernel-0:4.18.0-477.43.1.el8_8
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-0:5.14.0-362.18.1.el9_3
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kpatch-patch
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.0 Extended Update SupportFixed in: kernel-0:5.14.0-70.85.1.el9_0
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.0 Extended Update SupportFixed in: kernel-rt-0:5.14.0-70.85.1.rt21.156.el9_0
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.0 Extended Update SupportFixed in: kpatch-patch
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.2 Extended Update SupportFixed in: kernel-0:5.14.0-284.40.1.el9_2
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.2 Extended Update SupportFixed in: kernel-rt-0:5.14.0-284.40.1.rt14.325.el9_2
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.2 Extended Update SupportFixed in: kpatch-patch
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Virtualization 4 for Red Hat Enterprise Linux 8Fixed in: kernel-0:4.18.0-372.87.1.el8_6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.8 Extended Update SupportFixed in: kpatch-patch
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-0:4.18.0-513.9.1.el8_9
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kpatch-patch
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.2 Advanced Update SupportFixed in: kernel-0:4.18.0-193.128.1.el8_2
View patch
redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt

Vendor Advisories (2)

microsoft2023-Nov/CVE-2023-5178Important

Kernel: use after free in nvmet_tcp_free_crypto in nvme

Nov 14, 2023
redhatCVE-2023-5178Important

kernel: use after free in nvmet_tcp_free_crypto in NVMe

Oct 15, 2023

References

lists.debian.org / debian-lts-announce/2024/01/msg00005.html
security.netapp.com / advisory/ntap-20231208-0004
access.redhat.com / errata/RHSA-2023:7370
Third Party Advisory
access.redhat.com / errata/RHSA-2023:7379
Third Party Advisory
access.redhat.com / errata/RHSA-2023:7418
Third Party Advisory
access.redhat.com / errata/RHSA-2023:7548
Third Party Advisory
access.redhat.com / errata/RHSA-2023:7549
Third Party Advisory
access.redhat.com / errata/RHSA-2023:7551
Third Party Advisory
access.redhat.com / errata/RHSA-2023:7554
Third Party Advisory
access.redhat.com / errata/RHSA-2023:7557
Third Party Advisory
access.redhat.com / errata/RHSA-2023:7559
Third Party Advisory
access.redhat.com / errata/RHSA-2024:0340
Third Party Advisory
access.redhat.com / errata/RHSA-2024:0378
Third Party Advisory
access.redhat.com / errata/RHSA-2024:0386
Third Party Advisory
access.redhat.com / errata/RHSA-2024:0412
Third Party Advisory
access.redhat.com / errata/RHSA-2024:0431
Third Party Advisory
access.redhat.com / errata/RHSA-2024:0432
Third Party Advisory
access.redhat.com / errata/RHSA-2024:0461
Third Party Advisory
access.redhat.com / errata/RHSA-2024:0554
Third Party Advisory
access.redhat.com / errata/RHSA-2024:0575
Third Party Advisory
access.redhat.com / errata/RHSA-2024:1268
Third Party Advisory
access.redhat.com / errata/RHSA-2024:1269
Third Party Advisory
access.redhat.com / errata/RHSA-2024:1278
Third Party Advisory
access.redhat.com / security/cve/CVE-2023-5178
Third Party Advisory
bugzilla.redhat.com / show_bug.cgi
Issue TrackingThird Party Advisory
lore.kernel.org / linux-nvme/[email protected]
Mailing ListPatchVendor Advisory