nfqnl_mangle in net/netfilter/nfnetlink_queue.c in the Linux kernel through 5.18.14 allows remote attackers to cause a denial of service (panic) because, in the case of an nf_queue verdict with a one-byte nfta_payload attribute, an skb_pull can encounter a negative skb->len.
2022-07-27T20:15:08.643
2025-05-05T16:15:18.830
Modified
CVSSv3.1: 7.5 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | linux | linux_kernel | < 4.9.326 | Yes |
Operating System | linux | linux_kernel | < 4.14.291 | Yes |
Operating System | linux | linux_kernel | < 4.19.255 | Yes |
Operating System | linux | linux_kernel | < 5.4.209 | Yes |
Operating System | linux | linux_kernel | < 5.10.135 | Yes |
Operating System | linux | linux_kernel | < 5.15.59 | Yes |
Operating System | linux | linux_kernel | < 5.18.16 | Yes |
Operating System | debian | debian_linux | 10.0 | Yes |
Operating System | debian | debian_linux | 11.0 | Yes |
Application | netapp | active_iq_unified_manager | - | Yes |
Application | netapp | solidfire_\&_hci_management_node | - | Yes |
Application | netapp | solidfire_\&_hci_storage_node | - | Yes |
Application | netapp | solidfire_enterprise_sds | - | Yes |
Hardware | netapp | hci_compute_node | - | Yes |