CVE-2023-4244
Summary
| CVE | CVE-2023-4244 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-09-06 14:15:00 UTC |
| Updated | 2023-10-29 02:43:00 UTC |
| Description | A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation.
Due to a race condition between nf_tables netlink control plane transaction and nft_set element garbage collection, it is possible to underflow the reference counter causing a use-after-free vulnerability.
We recommend upgrading past commit 3e91b0ebd994635df2346353322ac51ce84ce6d8. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| [SECURITY] [DLA 3623-1] linux-5.10 security update |
MISC |
lists.debian.org |
|
| kernel/git/torvalds/linux.git - Linux kernel source tree |
MISC |
git.kernel.org |
|
| kernel.dance/3e91b0ebd994635df2346353322ac51ce84ce6d8 |
MISC |
kernel.dance |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 161237 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel (ELSA-2023-13043)
- 161344 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel-container (ELSA-2024-12153)
- 161345 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel-container (ELSA-2024-12154)
- 161347 Oracle Enterprise Linux Security Update for unbreakable enterprise kernel (ELSA-2024-12151)
- 161417 Oracle Enterprise Linux Security Update for kernel (ELSA-2024-1248)
- 199841 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6444-1)
- 199844 Ubuntu Security Notification for Linux kernel (Intel IoTG) Vulnerabilities (USN-6445-1)
- 199847 Ubuntu Security Notification for Linux kernel (OEM) Vulnerabilities (USN-6443-1)
- 199848 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6446-1)
- 199858 Ubuntu Security Notification for Linux kernel (Intel IoTG) Vulnerabilities (USN-6445-2)
- 199859 Ubuntu Security Notification for Linux kernel (StarFive) Vulnerabilities (USN-6444-2)
- 199861 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6446-2)
- 199868 Ubuntu Security Notification for Linux kernel (Oracle) Vulnerabilities (USN-6446-3)
- 199881 Ubuntu Security Notification for Linux kernel (OEM) Vulnerabilities (USN-6461-1)
- 199883 Ubuntu Security Notification for Linux kernel (NVIDIA) Vulnerabilities (USN-6466-1)
- 199938 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6503-1)
- 199982 Ubuntu Security Notification for Linux kernel (GCP) Vulnerability (USN-6537-1)
- 200171 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6681-1)
- 200183 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6681-2)
- 200192 Ubuntu Security Notification for Linux kernel Vulnerabilities (USN-6681-3)
- 200203 Ubuntu Security Notification for Linux kernel (AWS) Vulnerabilities (USN-6681-4)
- 200221 Ubuntu Security Notification for Linux kernel (Azure) Vulnerabilities (USN-6716-1)
- 242985 Red Hat Update for kernel (RHSA-2024:1018)
- 242986 Red Hat Update for kernel-rt (RHSA-2024:1019)
- 243052 Red Hat Update for kernel (RHSA-2024:1248)
- 356530 Amazon Linux Security Advisory for kernel : ALAS2023-2023-385
- 356569 Amazon Linux Security Advisory for kernel : ALAS2KERNEL-5.15-2023-028
- 356612 Amazon Linux Security Advisory for kernel : ALAS2KERNEL-5.10-2023-042
- 6000265 Debian Security Update for linux-5.10 (DLA 3623-1)
- 6000429 Debian Security Update for linux (DLA 3710-1)
- 6140275 AWS Bottlerocket Security Update for kernel (GHSA-rmmr-77h8-w26x)
- 6140298 AWS Bottlerocket Security Update for kernel (GHSA-gg8j-j5j9-mhrh)
- 673595 EulerOS Security Update for kernel (EulerOS-SA-2023-3247)
- 673692 EulerOS Security Update for kernel (EulerOS-SA-2023-3275)
- 907595 Common Base Linux Mariner (CBL-Mariner) Security Update for kernel (28676-1)