0.0
NA
CVE-2023-52756
Here is the title: Azure Information Governance Forbidden File Inclusion Into Repositories Allow Unauthenticated Remote Code Execution
Description

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

INFO

Published Date :

May 21, 2024, 4:15 p.m.

Last Modified :

June 8, 2024, 12:15 p.m.

Source :

416baaa9-dc9f-4396-8d5f-8c081fb06d67

Remotely Exploitable :

No

Impact Score :

Exploitability Score :

Affected Products

The following products are affected by CVE-2023-52756 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below.

ID Vendor Product Action
1 Linux linux_kernel

We scan GitHub repositories to detect new proof-of-concept exploits. Following list is a collection of public exploits and proof-of-concepts, which have been published on GitHub (sorted by the most recently updated).

Results are limited to the first 15 repositories due to potential performance issues.

The following list is the news that have been mention CVE-2023-52756 vulnerability anywhere in the article.

The following table lists the changes that have been made to the CVE-2023-52756 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability's severity, exploitability, or other characteristics.

  • CVE Rejected by 416baaa9-dc9f-4396-8d5f-8c081fb06d67

    Jun. 08, 2024

    Action Type Old Value New Value
  • CVE Modified by 416baaa9-dc9f-4396-8d5f-8c081fb06d67

    Jun. 08, 2024

    Action Type Old Value New Value
    Changed Description In the Linux kernel, the following vulnerability has been resolved: pwm: Fix double shift bug These enums are passed to set/test_bit(). The set/test_bit() functions take a bit number instead of a shifted value. Passing a shifted value is a double shift bug like doing BIT(BIT(1)). The double shift bug doesn't cause a problem here because we are only checking 0 and 1 but if the value was 5 or above then it can lead to a buffer overflow. Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
    Removed Reference kernel.org https://git.kernel.org/stable/c/bce1f7c7e9812da57de1dda293cba87c693e9958
    Removed Reference kernel.org https://git.kernel.org/stable/c/a98ff250b5af87f92f17bb9725cb21de1931ee57
    Removed Reference kernel.org https://git.kernel.org/stable/c/eca19db60f99925461f49c3fd743733881395728
    Removed Reference kernel.org https://git.kernel.org/stable/c/e52518b9cb9fc98fc043c8fb2b8cfc619ca8a88b
    Removed Reference kernel.org https://git.kernel.org/stable/c/a7ee519e8095d9c834086d0ff40da11415e1e4d7
    Removed Reference kernel.org https://git.kernel.org/stable/c/1fb3a9c59e7f7d2b1d737a0d6e02e31d5b516455
    Removed Reference kernel.org https://git.kernel.org/stable/c/c19a8794bf4fe45cff997f07a75ea84cc9e5d89c
    Removed Reference kernel.org https://git.kernel.org/stable/c/45d0a298e05adee521f6fe605d6a88341ba07edd
    Removed Reference kernel.org https://git.kernel.org/stable/c/d27abbfd4888d79dd24baf50e774631046ac4732
  • CVE Translated by 416baaa9-dc9f-4396-8d5f-8c081fb06d67

    Jun. 08, 2024

    Action Type Old Value New Value
    Removed Translation Title: kernel de Linux Description: En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: pwm: corrige el error de double shift. Estas enumeraciones se pasan a set/test_bit(). Las funciones set/test_bit() toman un número de bit en lugar de un valor desplazado. Pasar un valor desplazado es un error de doble desplazamiento, como hacer BIT(BIT(1)). El error de doble turno no causa un problema aquí porque solo estamos verificando 0 y 1, pero si el valor era 5 o superior, puede provocar un desbordamiento del búfer.
  • CVE Modified by 416baaa9-dc9f-4396-8d5f-8c081fb06d67

    May. 29, 2024

    Action Type Old Value New Value
  • CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67

    May. 21, 2024

    Action Type Old Value New Value
    Added Description In the Linux kernel, the following vulnerability has been resolved: pwm: Fix double shift bug These enums are passed to set/test_bit(). The set/test_bit() functions take a bit number instead of a shifted value. Passing a shifted value is a double shift bug like doing BIT(BIT(1)). The double shift bug doesn't cause a problem here because we are only checking 0 and 1 but if the value was 5 or above then it can lead to a buffer overflow.
    Added Reference kernel.org https://git.kernel.org/stable/c/bce1f7c7e9812da57de1dda293cba87c693e9958 [No types assigned]
    Added Reference kernel.org https://git.kernel.org/stable/c/a98ff250b5af87f92f17bb9725cb21de1931ee57 [No types assigned]
    Added Reference kernel.org https://git.kernel.org/stable/c/eca19db60f99925461f49c3fd743733881395728 [No types assigned]
    Added Reference kernel.org https://git.kernel.org/stable/c/e52518b9cb9fc98fc043c8fb2b8cfc619ca8a88b [No types assigned]
    Added Reference kernel.org https://git.kernel.org/stable/c/a7ee519e8095d9c834086d0ff40da11415e1e4d7 [No types assigned]
    Added Reference kernel.org https://git.kernel.org/stable/c/1fb3a9c59e7f7d2b1d737a0d6e02e31d5b516455 [No types assigned]
    Added Reference kernel.org https://git.kernel.org/stable/c/c19a8794bf4fe45cff997f07a75ea84cc9e5d89c [No types assigned]
    Added Reference kernel.org https://git.kernel.org/stable/c/45d0a298e05adee521f6fe605d6a88341ba07edd [No types assigned]
    Added Reference kernel.org https://git.kernel.org/stable/c/d27abbfd4888d79dd24baf50e774631046ac4732 [No types assigned]
EPSS is a daily estimate of the probability of exploitation activity being observed over the next 30 days. Following chart shows the EPSS score history of the vulnerability.
CWE - Common Weakness Enumeration

While CVE identifies specific instances of vulnerabilities, CWE categorizes the common flaws or weaknesses that can lead to vulnerabilities. CVE-2023-52756 is associated with the following CWEs:

Common Attack Pattern Enumeration and Classification (CAPEC)

Common Attack Pattern Enumeration and Classification (CAPEC) stores attack patterns, which are descriptions of the common attributes and approaches employed by adversaries to exploit the CVE-2023-52756 weaknesses.

NONE - Vulnerability Scoring System