Lucene search

K
ubuntucveUbuntu.comUB:CVE-2024-26809
HistoryApr 04, 2024 - 12:00 a.m.

CVE-2024-26809

2024-04-0400:00:00
ubuntu.com
ubuntu.com
15
linux kernel
netfilter
nft_set_pipapo
vulnerability
element release

AI Score

7.5

Confidence

High

EPSS

0

Percentile

10.3%

In the Linux kernel, the following vulnerability has been resolved:
netfilter: nft_set_pipapo: release elements in clone only from destroy path
Clone already always provides a current view of the lookup table, use it to
destroy the set, otherwise it is possible to destroy elements twice. This
fix requires: 212ed75dc5fb (“netfilter: nf_tables: integrate pipapo into
commit protocol”) which came after: 9827a0e6e23b (“netfilter:
nft_set_pipapo: release elements in clone from abort path”).

Notes

Author Note
Priority reason: Reported by Google kCTF
Rows per page:
1-10 of 581

References

AI Score

7.5

Confidence

High

EPSS

0

Percentile

10.3%