In the Linux kernel, the following vulnerability has been resolved:
netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain
Remove netdevice from inet/ingress basechain in case NETDEV_UNREGISTER event is reported, otherwise a stale reference to netdevice remains in the hook list.
| Software | From | Fixed in |
|---|---|---|
| linux / linux_kernel | 6.7 | 6.7.3 |
| linux / linux_kernel | 6.2 | 6.6.15 |
| linux / linux_kernel | 6.8-rc1 | 6.8-rc1.x |
| linux / linux_kernel | 5.11 | 5.15.149 |
| linux / linux_kernel | 5.10 | 5.10.210 |
| linux / linux_kernel | 5.16 | 6.1.76.x |
| debian / debian_linux | 10.0 | 10.0.x |