A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation.
Addition and removal of rules from chain bindings within the same transaction causes leads to use-after-free.
We recommend upgrading past commit f15f29fd4779be8a418b66e9d52979bb6d6c2325.
| Software | From | Fixed in |
|---|---|---|
| debian / debian_linux | 10.0 | 10.0.x |
| linux / linux_kernel | 5.9.0 | 5.10.198 |
| linux / linux_kernel | 5.11 | 5.15.134 |
| linux / linux_kernel | 5.16 | 6.1.56 |
| linux / linux_kernel | 6.2 | 6.5.6 |