Lucene search

K
broadcomBroadcom Security ResponseBSNCA22705
HistoryNov 07, 2023 - 12:00 a.m.

A use-after-free vulnerability was found in the Netfilter subsystem of the Linux kernel when processing batch requests to update nf_tables configuration. (CVE-2023-32233)

2023-11-0700:00:00
Broadcom Security Response
support.broadcom.com
24
linux kernel
netfilter subsystem
use-after-free vulnerability
nf_tables
arbitrary read
write operations
kernel memory
unprivileged users
root privileges
anonymous sets
cve-2023-32233
software

8.2 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

In the Linux kernel through 6.3.1, a use-after-free in Netfilter nf_tables when processing batch requests can be abused to perform arbitrary read and write operations on kernel memory. Unprivileged local users can obtain root privileges. This occurs because anonymous sets are mishandled.