PT-2024-6504 · Linux+8 · Linux Kernel+8

Pablo Neira Ayuso

·

Published

2024-01-24

·

Updated

2025-09-29

·

CVE-2024-26808

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel versions from v5.9 to v6.6
Description The issue is related to a use-after-free vulnerability in the Netfilter component of the Linux kernel, specifically in the nft chain filter function. This vulnerability can lead to a local privilege escalation. The problem arises when a stale reference to a netdevice remains in the hook list after a NETDEV UNREGISTER event is reported.
Recommendations As a temporary workaround, consider disabling the nft chain filter function until a patch is available. Restrict access to the Netfilter component to minimize the risk of exploitation. Update to a version of the Linux kernel that has the fix for the netfilter: nft chain filter: handle NETDEV UNREGISTER for inet/ingress basechain issue.

Exploit

Fix

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2024:5363
ALSA-2025_16880
BDU:2024-07646
CVE-2024-26808
DLA-3842-1
DSA-5681-1
INFSA-2024_5363
OESA-2024-1622
OESA-2024-1647
OESA-2024-1648
OESA-2024-1649
OPENSUSE-SU-2024_3190-1
OPENSUSE-SU-2024_3209-1
OPENSUSE-SU-2024_3483-1
RHSA-2024:4823
RHSA-2024:4831
RHSA-2024:5256
RHSA-2024:5257
RHSA-2024:5363
RHSA-2024_5363
RLSA-2024:5363
SUSE-SU-2024:3190-1
SUSE-SU-2024:3194-1
SUSE-SU-2024:3195-1
SUSE-SU-2024:3209-1
SUSE-SU-2024:3383-1
SUSE-SU-2024:3483-1
SUSE-SU-2025:02264-1
SUSE-SU-2025:02321-1
SUSE-SU-2025:02322-1
SUSE-SU-2025:02537-1
SUSE-SU-2025:03341-1
SUSE-SU-2025:03370-1
SUSE-SU-2025:03374-1
SUSE-SU-2025:03375-1
SUSE-SU-2025:03381-1
SUSE-SU-2025:03387-1
SUSE-SU-2025:03391-1
SUSE-SU-2025:20044-1
SUSE-SU-2025:20047-1
SUSE-SU-2025:2264-1
SUSE-SU-2025_02264-1
SUSE-SU-2025_02537-1
USN-6765-1
USN-6766-1
USN-6766-2
USN-6766-3
USN-6795-1
USN-6818-1
USN-6818-2
USN-6818-3
USN-6818-4
USN-6819-1
USN-6819-2
USN-6819-3
USN-6819-4
USN-6828-1

Affected Products

Almalinux
Astra Linux
Linuxmint
Linux Kernel
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu