Количество 63
Количество 63

CVE-2024-1086
A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The nft_verdict_init() function allows positive values as drop error within the hook verdict, and hence the nf_hook_slow() function can cause a double free vulnerability when NF_DROP is issued with a drop error which resembles NF_ACCEPT. We recommend upgrading past commit f342de4e2f33e0e39165d8639387aa6c19dff660.

CVE-2024-1086
A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The nft_verdict_init() function allows positive values as drop error within the hook verdict, and hence the nf_hook_slow() function can cause a double free vulnerability when NF_DROP is issued with a drop error which resembles NF_ACCEPT. We recommend upgrading past commit f342de4e2f33e0e39165d8639387aa6c19dff660.

CVE-2024-1086
A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The nft_verdict_init() function allows positive values as drop error within the hook verdict, and hence the nf_hook_slow() function can cause a double free vulnerability when NF_DROP is issued with a drop error which resembles NF_ACCEPT. We recommend upgrading past commit f342de4e2f33e0e39165d8639387aa6c19dff660.

CVE-2024-1086
CVE-2024-1086
A use-after-free vulnerability in the Linux kernel's netfilter: nf_tab ...

SUSE-SU-2024:1401-1
Security update for the Linux Kernel (Live Patch 52 for SLE 12 SP5)

SUSE-SU-2024:1373-1
Security update for the Linux Kernel (Live Patch 51 for SLE 12 SP5)
GHSA-gfh2-2mj9-m2cx
A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The nft_verdict_init() function allows positive values as drop error within the hook verdict, and hence the nf_hook_slow() function can cause a double free vulnerability when NF_DROP is issued with a drop error which resembles NF_ACCEPT. We recommend upgrading past commit f342de4e2f33e0e39165d8639387aa6c19dff660.
ELSA-2024-12378
ELSA-2024-12378: Unbreakable Enterprise kernel security update (IMPORTANT)
ELSA-2024-12266
ELSA-2024-12266: kernel security update (IMPORTANT)
ELSA-2024-12265
ELSA-2024-12265: kernel security update (IMPORTANT)
ELSA-2024-12260
ELSA-2024-12260: Unbreakable Enterprise kernel-container security update (IMPORTANT)
ELSA-2024-12259
ELSA-2024-12259: Unbreakable Enterprise kernel-container security update (IMPORTANT)
ELSA-2024-12257
ELSA-2024-12257: Unbreakable Enterprise kernel security update (IMPORTANT)
ELSA-2024-12256
ELSA-2024-12256: Unbreakable Enterprise kernel security update (IMPORTANT)
ELSA-2024-12255
ELSA-2024-12255: Unbreakable Enterprise kernel security update (IMPORTANT)

BDU:2024-01187
Уязвимость функции nft_verdict_init() в модуле net/netfilter/nf_tables_api.c ядра операционной системы Linux, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации и повысить свои привилегии

SUSE-SU-2024:1554-1
Security update for the Linux Kernel (Live Patch 43 for SLE 15 SP2)

SUSE-SU-2024:1506-1
Security update for the Linux Kernel (Live Patch 44 for SLE 15 SP2)

SUSE-SU-2024:1410-1
Security update for the Linux Kernel (Live Patch 8 for SLE 15 SP5)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2024-1086 A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The nft_verdict_init() function allows positive values as drop error within the hook verdict, and hence the nf_hook_slow() function can cause a double free vulnerability when NF_DROP is issued with a drop error which resembles NF_ACCEPT. We recommend upgrading past commit f342de4e2f33e0e39165d8639387aa6c19dff660. | CVSS3: 7.8 | 85% Высокий | больше 1 года назад |
![]() | CVE-2024-1086 A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The nft_verdict_init() function allows positive values as drop error within the hook verdict, and hence the nf_hook_slow() function can cause a double free vulnerability when NF_DROP is issued with a drop error which resembles NF_ACCEPT. We recommend upgrading past commit f342de4e2f33e0e39165d8639387aa6c19dff660. | CVSS3: 7.8 | 85% Высокий | больше 1 года назад |
![]() | CVE-2024-1086 A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The nft_verdict_init() function allows positive values as drop error within the hook verdict, and hence the nf_hook_slow() function can cause a double free vulnerability when NF_DROP is issued with a drop error which resembles NF_ACCEPT. We recommend upgrading past commit f342de4e2f33e0e39165d8639387aa6c19dff660. | CVSS3: 7.8 | 85% Высокий | больше 1 года назад |
![]() | CVSS3: 7.8 | 85% Высокий | больше 1 года назад | |
CVE-2024-1086 A use-after-free vulnerability in the Linux kernel's netfilter: nf_tab ... | CVSS3: 7.8 | 85% Высокий | больше 1 года назад | |
![]() | SUSE-SU-2024:1401-1 Security update for the Linux Kernel (Live Patch 52 for SLE 12 SP5) | 85% Высокий | около 1 года назад | |
![]() | SUSE-SU-2024:1373-1 Security update for the Linux Kernel (Live Patch 51 for SLE 12 SP5) | 85% Высокий | около 1 года назад | |
GHSA-gfh2-2mj9-m2cx A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. The nft_verdict_init() function allows positive values as drop error within the hook verdict, and hence the nf_hook_slow() function can cause a double free vulnerability when NF_DROP is issued with a drop error which resembles NF_ACCEPT. We recommend upgrading past commit f342de4e2f33e0e39165d8639387aa6c19dff660. | CVSS3: 7.8 | 85% Высокий | больше 1 года назад | |
ELSA-2024-12378 ELSA-2024-12378: Unbreakable Enterprise kernel security update (IMPORTANT) | около 1 года назад | |||
ELSA-2024-12266 ELSA-2024-12266: kernel security update (IMPORTANT) | около 1 года назад | |||
ELSA-2024-12265 ELSA-2024-12265: kernel security update (IMPORTANT) | около 1 года назад | |||
ELSA-2024-12260 ELSA-2024-12260: Unbreakable Enterprise kernel-container security update (IMPORTANT) | около 1 года назад | |||
ELSA-2024-12259 ELSA-2024-12259: Unbreakable Enterprise kernel-container security update (IMPORTANT) | около 1 года назад | |||
ELSA-2024-12257 ELSA-2024-12257: Unbreakable Enterprise kernel security update (IMPORTANT) | около 1 года назад | |||
ELSA-2024-12256 ELSA-2024-12256: Unbreakable Enterprise kernel security update (IMPORTANT) | около 1 года назад | |||
ELSA-2024-12255 ELSA-2024-12255: Unbreakable Enterprise kernel security update (IMPORTANT) | около 1 года назад | |||
![]() | BDU:2024-01187 Уязвимость функции nft_verdict_init() в модуле net/netfilter/nf_tables_api.c ядра операционной системы Linux, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации и повысить свои привилегии | CVSS3: 7.8 | 85% Высокий | больше 1 года назад |
![]() | SUSE-SU-2024:1554-1 Security update for the Linux Kernel (Live Patch 43 for SLE 15 SP2) | около 1 года назад | ||
![]() | SUSE-SU-2024:1506-1 Security update for the Linux Kernel (Live Patch 44 for SLE 15 SP2) | около 1 года назад | ||
![]() | SUSE-SU-2024:1410-1 Security update for the Linux Kernel (Live Patch 8 for SLE 15 SP5) | около 1 года назад |
Уязвимостей на страницу