CVE-2024-0193
6.7
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.8 / Impact: 5.9
Source: NVD
Description
A use-after-free flaw was found in the netfilter subsystem of the Linux kernel. If the catchall element is garbage-collected when the pipapo set is removed, the element can be deactivated twice. This can cause a use-after-free issue on an NFT_CHAIN object or NFT_OBJECT object, allowing a local unprivileged user with CAP_NET_ADMIN capability to escalate their privileges on the system.
Affected (64)
Products: Redhat: Codeready Linux Builder For Eus, Codeready Linux Builder For Ibm Z Systems Eus, Codeready Linux Builder For Power Little Endian Eus, Enterprise Linux, Enterprise Linux For Els, Enterprise Linux For Eus, Enterprise Linux For Ibm Z Systems, Enterprise Linux For Ibm Z Systems Els, Enterprise Linux For Ibm Z Systems Eus, Enterprise Linux For Power Little Endian Els, Enterprise Linux For Power Little Endian Eus, Enterprise Linux For Update Services For Sap Solutions, Enterprise Linux Server Aus, Enterprise Linux Server For Power Little Endian Update Services For Sap Solutions, Codeready Linux Builder, Codeready Linux Builder For Ibm Z Systems, Codeready Linux Builder For Power Little Endian, Enterprise Linux For Arm 64, Enterprise Linux For Arm 64 Els, Enterprise Linux For Arm 64 Eus, Openshift Logging · Linux: Linux Kernel
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.2 | |
| Version 9.2_s390x | |
| Version 9.2 | |
| Version 9.2 | |
| Version 9.2 | |
| Version 9.2 | |
| Version 9.2_s390x | |
| Version 9.2 | |
| Version 9.2 | |
| Version 9.2 | |
| Version 9.2 | |
| Version 9.2 | |
| Version 9.2 | |
| Version 9.2 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.0 | |
| Version 9.4 | |
| Version 9.0_s390x | |
| Version 9.4_s390x | |
| Version 9.0_ppc64le | |
| Version 9.4_ppc64le | |
| Version 9.0 | |
| Version 9.4_aarch64 | |
| Version 9.4_aarch64 | |
| Version 9.4_aarch64 | |
| Version 9.4 | |
| Version 9.4 | |
| Version 9.4_s390x | |
| Version 9.4_s390x | |
| Version 9.4_s390x | |
| Version 9.4_ppc64le | |
| Version 9.0_ppc64le | |
| Version 9.4 | |
| Version 9.4 | |
| Version 9.4_ppc64le |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version 9.0_aarch64 | |
| Version 9.0_s390x | |
| Version 9.0 | |
| Version 9.0_ppc64le |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| From 5.10.198 to 5.10.206 |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| From 5.0 to 5.8.6 |
| Running on/with | Platform Versions |
|---|---|
Redhat Enterprise Linux | Version 9.0 |
Redhat Enterprise Linux For Ibm Z Systems | Version 9.0 |
Redhat Enterprise Linux For Power Little Endian | Version 9.0 |
References (16)
Source: secalert@redhat.com
MitigationThird Party Advisory
Source: secalert@redhat.com
Issue TrackingPatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
MitigationThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingPatchThird Party Advisory
Timeline
No history available yet.