Lucene search

K
vulnrichmentLinuxVULNRICHMENT:CVE-2024-26581
HistoryFeb 20, 2024 - 12:52 p.m.

CVE-2024-26581 netfilter: nft_set_rbtree: skip end interval element from gc

2024-02-2012:52:57
Linux
github.com
5
netfilter
vulnerability
resolved
linux kernel

AI Score

7.4

Confidence

High

SSVC

Exploitation

none

Automatable

no

Technical Impact

partial

In the Linux kernel, the following vulnerability has been resolved:

netfilter: nft_set_rbtree: skip end interval element from gc

rbtree lazy gc on insert might collect an end interval element that has
been just added in this transactions, skip end interval elements that
are not yet active.

CNA Affected

[
  {
    "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
    "vendor": "Linux",
    "product": "Linux",
    "versions": [
      {
        "status": "affected",
        "version": "8284a79136c3",
        "lessThan": "c60d252949ca",
        "versionType": "git"
      },
      {
        "status": "affected",
        "version": "acaee227cf79",
        "lessThan": "10e9cb393136",
        "versionType": "git"
      },
      {
        "status": "affected",
        "version": "893cb3c3513c",
        "lessThan": "4cee42fcf54f",
        "versionType": "git"
      },
      {
        "status": "affected",
        "version": "50cbb9d195c1",
        "lessThan": "2bab493a5624",
        "versionType": "git"
      },
      {
        "status": "affected",
        "version": "89a4d1a89751",
        "lessThan": "1296c110c5a0",
        "versionType": "git"
      },
      {
        "status": "affected",
        "version": "f718863aca46",
        "lessThan": "b734f7a47aeb",
        "versionType": "git"
      },
      {
        "status": "affected",
        "version": "f718863aca46",
        "lessThan": "6eb14441f106",
        "versionType": "git"
      },
      {
        "status": "affected",
        "version": "f718863aca46",
        "lessThan": "60c0c230c6f0",
        "versionType": "git"
      }
    ],
    "programFiles": [
      "net/netfilter/nft_set_rbtree.c"
    ],
    "defaultStatus": "unaffected"
  },
  {
    "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
    "vendor": "Linux",
    "product": "Linux",
    "versions": [
      {
        "status": "affected",
        "version": "6.5"
      },
      {
        "status": "unaffected",
        "version": "0",
        "lessThan": "6.5",
        "versionType": "custom"
      },
      {
        "status": "unaffected",
        "version": "5.4.269",
        "versionType": "custom",
        "lessThanOrEqual": "5.4.*"
      },
      {
        "status": "unaffected",
        "version": "5.10.210",
        "versionType": "custom",
        "lessThanOrEqual": "5.10.*"
      },
      {
        "status": "unaffected",
        "version": "5.15.149",
        "versionType": "custom",
        "lessThanOrEqual": "5.15.*"
      },
      {
        "status": "unaffected",
        "version": "6.1.78",
        "versionType": "custom",
        "lessThanOrEqual": "6.1.*"
      },
      {
        "status": "unaffected",
        "version": "6.6.17",
        "versionType": "custom",
        "lessThanOrEqual": "6.6.*"
      },
      {
        "status": "unaffected",
        "version": "6.7.5",
        "versionType": "custom",
        "lessThanOrEqual": "6.7.*"
      },
      {
        "status": "unaffected",
        "version": "6.8",
        "versionType": "original_commit_for_fix",
        "lessThanOrEqual": "*"
      }
    ],
    "programFiles": [
      "net/netfilter/nft_set_rbtree.c"
    ],
    "defaultStatus": "affected"
  }
]

AI Score

7.4

Confidence

High

SSVC

Exploitation

none

Automatable

no

Technical Impact

partial