CVE-2023-52433

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_rbtree: skip sync GC for new elements in this transaction New elements in this transaction might expired before such transaction ends. Skip sync GC for such elements otherwise commit path might walk over an already released object. Once transaction is finished, async GC will collect such expired element.
Configurations

No configuration.

History

21 Nov 2024, 08:39

Type Values Removed Values Added
References
  • () https://security.netapp.com/advisory/ntap-20240828-0003/ -
References () https://git.kernel.org/stable/c/03caf75da1059f0460666c826e9f50e13dfd0017 - () https://git.kernel.org/stable/c/03caf75da1059f0460666c826e9f50e13dfd0017 -
References () https://git.kernel.org/stable/c/2ee52ae94baabf7ee09cf2a8d854b990dac5d0e4 - () https://git.kernel.org/stable/c/2ee52ae94baabf7ee09cf2a8d854b990dac5d0e4 -
References () https://git.kernel.org/stable/c/9a8c544158f68f656d1734eb5ba00c4f817b76b1 - () https://git.kernel.org/stable/c/9a8c544158f68f656d1734eb5ba00c4f817b76b1 -
References () https://git.kernel.org/stable/c/9af7dfb3c9d7985172a240f85e684c5cd33e29ce - () https://git.kernel.org/stable/c/9af7dfb3c9d7985172a240f85e684c5cd33e29ce -
References () https://git.kernel.org/stable/c/9db9feb841f7449772f9393c16b9ef4536d8c127 - () https://git.kernel.org/stable/c/9db9feb841f7449772f9393c16b9ef4536d8c127 -
References () https://git.kernel.org/stable/c/c323ed65f66e5387ee0a73452118d49f1dae81b8 - () https://git.kernel.org/stable/c/c323ed65f66e5387ee0a73452118d49f1dae81b8 -
References () https://git.kernel.org/stable/c/e3213ff99a355cda811b41e8dbb3472d13167a3a - () https://git.kernel.org/stable/c/e3213ff99a355cda811b41e8dbb3472d13167a3a -

06 Nov 2024, 22:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.4
CWE CWE-273

16 Jun 2024, 13:15

Type Values Removed Values Added
References
  • () https://git.kernel.org/stable/c/9db9feb841f7449772f9393c16b9ef4536d8c127 -

04 Apr 2024, 14:15

Type Values Removed Values Added
References
  • () https://git.kernel.org/stable/c/03caf75da1059f0460666c826e9f50e13dfd0017 -
  • () https://git.kernel.org/stable/c/9a8c544158f68f656d1734eb5ba00c4f817b76b1 -
  • () https://git.kernel.org/stable/c/9af7dfb3c9d7985172a240f85e684c5cd33e29ce -
  • () https://git.kernel.org/stable/c/c323ed65f66e5387ee0a73452118d49f1dae81b8 -

20 Feb 2024, 18:15

Type Values Removed Values Added
References
  • {'url': 'https://git.kernel.org/stable/c/2ee52ae94baa', 'name': 'https://git.kernel.org/stable/c/2ee52ae94baa', 'tags': [], 'refsource': ''}
  • {'url': 'https://git.kernel.org/stable/c/e3213ff99a35', 'name': 'https://git.kernel.org/stable/c/e3213ff99a35', 'tags': [], 'refsource': ''}
  • () https://git.kernel.org/stable/c/e3213ff99a355cda811b41e8dbb3472d13167a3a -
  • () https://git.kernel.org/stable/c/2ee52ae94baabf7ee09cf2a8d854b990dac5d0e4 -
Summary netfilter: nft_set_rbtree: skip sync GC for new elements in this transaction New elements in this transaction might expired before such transaction ends. Skip sync GC for such elements otherwise commit path might walk over an already released object. Once transaction is finished, async GC will collect such expired element. In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_rbtree: skip sync GC for new elements in this transaction New elements in this transaction might expired before such transaction ends. Skip sync GC for such elements otherwise commit path might walk over an already released object. Once transaction is finished, async GC will collect such expired element.

20 Feb 2024, 13:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-20 13:15

Updated : 2024-11-21 08:39


NVD link : CVE-2023-52433

Mitre link : CVE-2023-52433

CVE.ORG link : CVE-2023-52433


JSON object : View

Products Affected

No product.

CWE
CWE-273

Improper Check for Dropped Privileges