PT-2025-26138 · Linux+3 · Linux Kernel+3
Published
2022-11-15
·
Updated
2026-05-26
·
CVE-2022-50212
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
A vulnerability in the Linux kernel's netfilter nf tables component allows a chain from a different table to be used when doing lookups for chains on the same batch by using its ID. If a rule is added to a table but refers to a chain in a different table, it will be linked to the chain in the other table, but would have expressions referring to objects in the original table. When the original table is removed, the rule will not be removed as it is linked to a chain in the other table. This can lead to a use-after-free when expressions in the rule are processed or removed.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
DoS
Use After Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Astra Linux
Linux Kernel
Red Hat
Suse