Back to bug 2225198

Who When What Removed Added
Alex 2023-07-24 14:24:08 UTC Depends On 2225200, 2225199
Rohit Keshri 2023-07-25 08:44:04 UTC Fixed In Version Kernel 6.4~13
Rohit Keshri 2023-07-25 08:44:31 UTC Alias TRIAGE-CVE-2023-3610 CVE-2023-3610
Summary TRIAGE-CVE-2023-3610 kernel: netfilter: nf_tables: fix chain binding transaction logic in the abort path of NFT_MSG_NEWRULE CVE-2023-3610 CVE-2023-3610 kernel: netfilter: nf_tables: fix chain binding transaction logic in the abort path of NFT_MSG_NEWRULE
Rohit Keshri 2023-07-25 08:50:35 UTC Summary CVE-2023-3610 CVE-2023-3610 kernel: netfilter: nf_tables: fix chain binding transaction logic in the abort path of NFT_MSG_NEWRULE CVE-2023-3610 kernel: netfilter: nf_tables: fix chain binding transaction logic in the abort path of NFT_MSG_NEWRULE
Rohit Keshri 2023-07-25 08:51:26 UTC CC jpoimboe, kpatch-maint, rhandlin
Rohit Keshri 2023-07-25 11:16:00 UTC Depends On 2225462, 2225460, 2225459, 2225458, 2225465, 2225461, 2225464, 2225457
Rohit Keshri 2023-07-25 11:24:43 UTC Doc Text A use-after-free vulnerability was found in netfilter: nf_tables component in the Linux kernel due to a missing error handling in the abort path of NFT_MSG_NEWRULE. In this flaw a local attacker with CAP_NET_ADMIN access capability may cause a local privilege escalation problem.
RaTasha Tillery-Smith 2023-07-25 12:25:47 UTC Doc Text A use-after-free vulnerability was found in netfilter: nf_tables component in the Linux kernel due to a missing error handling in the abort path of NFT_MSG_NEWRULE. In this flaw a local attacker with CAP_NET_ADMIN access capability may cause a local privilege escalation problem. A use-after-free vulnerability was found in the netfilter: nf_tables component in the Linux kernel due to a missing error handling in the abort path of NFT_MSG_NEWRULE. This flaw allows a local attacker with CAP_NET_ADMIN access capability to cause a local privilege escalation problem.
Phil Sutter 2023-07-26 17:31:49 UTC Flags needinfo?(allarkin)
CC psutter
Alex 2023-07-30 12:50:21 UTC Flags needinfo?(allarkin) needinfo?(psutter)
Phil Sutter 2023-08-01 08:43:12 UTC Depends On 2213271
Beth Uptagrafft 2023-08-01 14:07:58 UTC Depends On 2214035
Phil Sutter 2023-08-03 09:43:58 UTC Depends On 2216159
Phil Sutter 2023-08-03 09:46:42 UTC Flags needinfo?(psutter)
Beth Uptagrafft 2023-08-03 15:32:33 UTC Depends On 2216166

Back to bug 2225198