Back to bug 2218605

Who When What Removed Added
Guilherme de Almeida Suckevicz 2023-06-29 17:43:35 UTC Depends On 2218637, 2218636
Alex 2023-07-02 11:00:41 UTC CC dfreiber, jburrell, rogbas, vkumar
Priority high medium
Severity high medium
Alex 2023-07-02 11:20:25 UTC Doc Text A flaw was found in the Linux kernel in linux/net/netfilter/nf_tables_api.c of the netfilter subsystem. This flaw allows a local user to cause an out-of-bounds read issue.
Alex 2023-07-02 11:22:37 UTC Comment 0 updated
Alex 2023-07-02 11:24:47 UTC Alias TRIAGE-CVE-2023-3390 CVE-2023-3390
Alex 2023-07-02 11:27:44 UTC Summary TRIAGE-CVE-2023-3390 kernel: use-after-free vulnerability under netfilter CVE-2023-3390 kernel: use-after-free vulnerability under netfilter
Alex 2023-07-02 11:31:39 UTC Summary CVE-2023-3390 kernel: use-after-free vulnerability under netfilter CVE-2023-3390 kernel: use-after-free vulnerability under netfilter because of incorrect error path handling with NFT_MSG_NEWRULE
Alex 2023-07-02 11:36:24 UTC CC qzhao
Alex 2023-07-02 11:36:45 UTC Depends On 2219131
Alex 2023-07-02 11:41:43 UTC Depends On 2219133, 2219132
RaTasha Tillery-Smith 2023-07-03 12:27:51 UTC Doc Text A flaw was found in the Linux kernel in linux/net/netfilter/nf_tables_api.c of the netfilter subsystem. This flaw allows a local user to cause an out-of-bounds read issue. A flaw was found in the Linux kernel in linux/net/netfilter/nf_tables_api.c in the Netfilter subsystem. This flaw allows a local user to cause an out-of-bounds read issue.
Phil Sutter 2023-07-05 13:01:00 UTC Depends On 2213271
Phil Sutter 2023-07-05 13:32:04 UTC Depends On 2214963
Beth Uptagrafft 2023-07-05 15:08:04 UTC Depends On 2214964
Beth Uptagrafft 2023-07-05 15:09:46 UTC Depends On 2214035
Alex 2023-07-06 09:08:16 UTC Resolution --- DUPLICATE
Summary CVE-2023-3390 kernel: use-after-free vulnerability under netfilter because of incorrect error path handling with NFT_MSG_NEWRULE kernel: use-after-free vulnerability under netfilter because of incorrect error path handling with NFT_MSG_NEWRULE
Status NEW CLOSED
Alias CVE-2023-3390
Last Closed 2023-07-06 09:08:16 UTC

Back to bug 2218605