netfilter newset stateless expression UAF

Bug #1976127 reported by Thadeu Lima de Souza Cascardo
256
This bug affects 1 person
Affects Status Importance Assigned to Milestone
linux (Ubuntu)
Fix Released
Critical
Thadeu Lima de Souza Cascardo

Bug Description

[Impact]
An unprivileged user could exploit a use-after-free vulnerability on nftables by using network namespaces.

[Test case]
Test PoC at https://seclists.org/oss-sec/2022/q2/159.

[Potential regression]
nftables users could be affected.

CVE References

Revision history for this message
Thadeu Lima de Souza Cascardo (cascardo) wrote :

This is CVE-2022-1966.

information type: Private Security → Public Security
summary: - upcoming update
+ netfilter newset stateless expression UAF
Changed in linux (Ubuntu):
assignee: nobody → Thadeu Lima de Souza Cascardo (cascardo)
status: New → Fix Released
importance: Undecided → Critical
description: updated
To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.