yocto ▾
›
kirkstone ▾
›
vulnerability
›
CVE-2023-28938
Component Overview
Vulnerability Overview
Name
CVE-2023-28938
Source
NVD (
link
)
Debian (
link
)
Description
Uncontrolled resource consumption in some Intel(R) SSD Tools software before version mdadm-4.2-rc2 may allow a priviledged user to potentially enable denial of service via local access.
CWEs
CWE-400
CWE-400
Published Date
Aug 11, 2023
Updated Date
Jun 17, 2026
Workaround
-
Advisories
http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00690.html
Vendor Advisory
http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00690.html
Vendor Advisory
Analysis
#
Affected Component
Analysis
mdadm
Exploitable
Vulnerability Ratings
#
3.4
CVSSv31
4.4
CVSSv31
NaN
other
Others affected components
#
Name
Project
Project Version
Version
Status
mdadm
buildroot
2025.02.x
4.3
Not Affected
mdadm
buildroot
master
4.6
Not Affected
mdadm
openwrt
master
4.3-r2
Not Affected
mdadm
openwrt
openwrt-25.12
4.3-r2
Not Affected
mdadm
yocto
master
4.6
Not Affected
mdadm
yocto
scarthgap
4.2
Exploitable