THREATINT

We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Zendesk (Helpdesk and Chat)

Ok

PUBLISHED

CVE-2024-27017

netfilter: nft_set_pipapo: walk over current view on netlink dump

Reserved:2024-02-19
Published:2024-05-01
Updated:2024-05-13

Description

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo: walk over current view on netlink dump The generation mask can be updated while netlink dump is in progress. The pipapo set backend walk iterator cannot rely on it to infer what view of the datastructure is to be used. Add notation to specify if user wants to read/update the set. Based on patch from Florian Westphal.

Product status

Default status
unaffected

2b84e215f874 before 721715655c72
affected

2b84e215f874 before 29b359cf6d95
affected

Default status
affected

6.4
affected

Any version before 6.4
unaffected

6.8.8
unaffected

6.9
unaffected

References

https://git.kernel.org/stable/c/721715655c72640567e8742567520c99801148ed

https://git.kernel.org/stable/c/29b359cf6d95fd60730533f7f10464e95bd17c73

cve.org CVE-2024-27017

nvd.nist.gov CVE-2024-27017

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2024-27017