A use-after-free vulnerability in the Linux kernel's...
High severity
Unreviewed
Published
Dec 18, 2023
to the GitHub Advisory Database
•
Updated Feb 8, 2024
Description
Published by the National Vulnerability Database
Dec 18, 2023
Published to the GitHub Advisory Database
Dec 18, 2023
Last updated
Feb 8, 2024
A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation.
The function nft_pipapo_walk did not skip inactive elements during set walk which could lead double deactivations of PIPAPO (Pile Packet Policies) elements, leading to use-after-free.
We recommend upgrading past commit 317eb9685095678f2c9f5a8189de698c5354316a.
References