Loading HuntDB...

GHSA-gcrv-hhf7-6qvh

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation.

Flaw in the error handling of bound chains causes a use-after-free in the abort path of NFT_MSG_NEWRULE. The vulnerability requires CAP_NET_ADMIN to be triggered.

We recommend upgrading past commit 4bedf9eee016286c835e3d8fa981ddece5338795.

Related CVEs

Key Information

GHSA ID
GHSA-gcrv-hhf7-6qvh
Published
July 21, 2023 9:30 PM
Last Modified
February 13, 2025 6:31 PM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 13, 2025 6:24 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.