CVE-2023-0386

A flaw was found in the Linux kernel, where unauthorized access to the execution of the setuid file with capabilities was found in the Linux...

Basic Information

CVE State
PUBLISHED
Reserved Date
January 18, 2023
Published Date
March 22, 2023
Last Updated
June 17, 2025
Vendor
Linux
Product
Kernel
Description
A flaw was found in the Linux kernel, where unauthorized access to the execution of the setuid file with capabilities was found in the Linux kernel’s OverlayFS subsystem in how a user copies a capable file from a nosuid mount into another mount. This uid mapping bug allows a local user to escalate their privileges on the system.
Tags
linux cisa

CVSS Scores

CVSS v3.1

7.8 - HIGH

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS Score

Score
56.34% (Percentile: 97.96%) as of 2025-06-20

SSVC Information

Exploitation
active
Technical Impact
total

Exploit Status

Exploited in the Wild
Yes (2025-06-17 17:30:23 UTC) Source

Known Exploited Vulnerability Information

Source Added Date
CISA 2025-06-17 17:30:12 UTC

Recent Mentions

CISA Warns of Active Exploitation of Linux Kernel Privilege Escalation Vulnerability

Source: TheHackerNews • Published: 2025-06-18 06:43:00 UTC

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday placed a security flaw impacting the Linux kernel in its Known Exploited Vulnerabilities (KEV) catalog, stating it has been actively exploited in the wild. The vulnerability, CVE-2023-0386 (CVSS score: 7.8), is an improper ownership bug in the Linux kernel that could be exploited to escalate privileges on susceptible

Scanner Integrations

Potential Proof of Concepts

Warning: These PoCs have not been tested and could contain malware. Use at your own risk.

cve_2023_0386_overlayfs_priv_esc

Type: metasploit • Created: Unknown

Metasploit module for CVE-2023-0386

puckiestyle/CVE-2023-0386

Type: github • Created: 2023-12-23 11:01:55 UTC • Stars: 2

Fanxiaoyao66/CVE-2023-0386

Type: github • Created: 2023-06-28 07:49:52 UTC • Stars: 16

非常简单的CVE-2023-0386's exp and analysis.Use c and sh.

sxlmnwb/CVE-2023-0386

Type: github • Created: 2023-05-16 10:26:10 UTC • Stars: 40

Vulnerabilities Exploitation On Ubuntu 22.04

AiK1d/CVE-2023-0386

Type: github • Created: 2023-05-08 01:53:50 UTC • Stars: 4

CVE-2023-0386 EXP

chenaotian/CVE-2023-0386

Type: github • Created: 2023-05-06 06:07:23 UTC • Stars: 117

CVE-2023-0386 analysis and Exp

xkaneiki/CVE-2023-0386

Type: github • Created: 2023-05-05 03:02:13 UTC • Stars: 391

CVE-2023-0386在ubuntu22.04上的提权

Satheesh575555/linux-4.19.72_CVE-2023-0386

Type: github • Created: 2023-05-04 11:55:43 UTC • Stars: 4

veritas501/CVE-2023-0386

Type: github • Created: 2023-04-20 08:51:20 UTC • Stars: 10

Timeline

  • CVE ID Reserved

  • CVE Published to Public

  • Detected by Metasploit

  • Added to KEVIntel