net/netfilter/nf_tables_api.c in the Linux kernel through 5.18.1 allows a local user (able to create user/net namespaces) to escalate privileges to root because an incorrect NFT_STATEFUL_EXPR check leads to a use-after-free.
2022-06-02T21:15:07.973
2024-11-21T07:06:01.077
Modified
CVSSv3.1: 7.8 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | linux | linux_kernel | < 4.9.318 | Yes |
Operating System | linux | linux_kernel | < 4.14.283 | Yes |
Operating System | linux | linux_kernel | < 4.19.247 | Yes |
Operating System | linux | linux_kernel | < 5.4.198 | Yes |
Operating System | linux | linux_kernel | < 5.10.120 | Yes |
Operating System | linux | linux_kernel | < 5.15.45 | Yes |
Operating System | linux | linux_kernel | < 5.17.13 | Yes |
Operating System | linux | linux_kernel | < 5.18.2 | Yes |
Operating System | fedoraproject | fedora | 35 | Yes |
Operating System | fedoraproject | fedora | 36 | Yes |
Operating System | debian | debian_linux | 9.0 | Yes |
Operating System | debian | debian_linux | 10.0 | Yes |
Operating System | netapp | h300s_firmware | - | Yes |
Hardware | netapp | h300s | - | No |
Operating System | netapp | h500s_firmware | - | Yes |
Hardware | netapp | h500s | - | No |
Operating System | netapp | h700s_firmware | - | Yes |
Hardware | netapp | h700s | - | No |
Operating System | netapp | h410s_firmware | - | Yes |
Hardware | netapp | h410s | - | No |
Operating System | netapp | h410c_firmware | - | Yes |
Hardware | netapp | h410c | - | No |