PT-2023-8117 · Linux+4 · Linux Kernel+4

Mauro Matteo Cascella

·

Published

2023-12-20

·

Updated

2026-06-05

·

CVE-2024-0193

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linux Kernel (affected versions not specified)
Description A use-after-free flaw was found in the netfilter subsystem of the Linux kernel. If the catchall element is garbage-collected when the pipapo set is removed, the element can be deactivated twice. This can cause a use-after-free issue on an NFT CHAIN object or NFT OBJECT object, allowing a local unprivileged user with CAP NET ADMIN capability to escalate their privileges on the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-00096
CVE-2024-0193
LSN-0101-1
LSN-0103-1
RHSA-2024:1018
RHSA-2024:1019
RHSA-2024:1248
RHSA-2024:4412
RHSA-2024:4415
RHSA-2024_1248
RXSA-2024:1248
USN-6606-1
USN-6607-1
USN-6608-1
USN-6608-2
USN-6609-1
USN-6609-2
USN-6609-3
USN-6628-1
USN-6628-2
USN-6635-1

Affected Products

Linux Kernel
Linuxmint
Red Hat
Red Os
Ubuntu