In the Linux kernel, the following vulnerability has been resolved:
netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations
{ "vanir_signatures": [ { "signature_type": "Line", "target": { "file": "net/netfilter/nft_ct.c" }, "id": "CVE-2024-26673-02123a81", "digest": { "threshold": 0.9, "line_hashes": [ "192287632054542852697903689963613336569", "266567119568454682048461409231349580146", "102583177618975963310603836794581912607", "260388121199677038340510937733692603295" ] }, "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@b775ced05489f4b77a35fe203e9aeb22f428e38f", "deprecated": false, "signature_version": "v1" }, { "signature_type": "Line", "target": { "file": "net/netfilter/nft_ct.c" }, "id": "CVE-2024-26673-2d132c2a", "digest": { "threshold": 0.9, "line_hashes": [ "192287632054542852697903689963613336569", "266567119568454682048461409231349580146", "102583177618975963310603836794581912607", "260388121199677038340510937733692603295" ] }, "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@f549f340c91f08b938d60266e792ff7748dae483", "deprecated": false, "signature_version": "v1" }, { "signature_type": "Line", "target": { "file": "net/netfilter/nft_ct.c" }, "id": "CVE-2024-26673-60001e53", "digest": { "threshold": 0.9, "line_hashes": [ "192287632054542852697903689963613336569", "266567119568454682048461409231349580146", "102583177618975963310603836794581912607", "260388121199677038340510937733692603295" ] }, "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@cfe3550ea5df292c9e2d608e8c4560032391847e", "deprecated": false, "signature_version": "v1" }, { "signature_type": "Line", "target": { "file": "net/netfilter/nft_ct.c" }, "id": "CVE-2024-26673-983b75b5", "digest": { "threshold": 0.9, "line_hashes": [ "192287632054542852697903689963613336569", "266567119568454682048461409231349580146", "102583177618975963310603836794581912607", "260388121199677038340510937733692603295" ] }, "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@0f501dae16b7099e69ee9b0d5c70b8f40fd30e98", "deprecated": false, "signature_version": "v1" }, { "signature_type": "Line", "target": { "file": "net/netfilter/nft_ct.c" }, "id": "CVE-2024-26673-984d9b0d", "digest": { "threshold": 0.9, "line_hashes": [ "192287632054542852697903689963613336569", "266567119568454682048461409231349580146", "102583177618975963310603836794581912607", "260388121199677038340510937733692603295" ] }, "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@38cc1605338d99205a263707f4dde76408d3e0e8", "deprecated": false, "signature_version": "v1" }, { "signature_type": "Line", "target": { "file": "net/netfilter/nft_ct.c" }, "id": "CVE-2024-26673-a7975cba", "digest": { "threshold": 0.9, "line_hashes": [ "192287632054542852697903689963613336569", "266567119568454682048461409231349580146", "102583177618975963310603836794581912607", "260388121199677038340510937733692603295" ] }, "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@8059918a1377f2f1fff06af4f5a4ed3d5acd6bc4", "deprecated": false, "signature_version": "v1" }, { "signature_type": "Line", "target": { "file": "net/netfilter/nft_ct.c" }, "id": "CVE-2024-26673-c0b95e2d", "digest": { "threshold": 0.9, "line_hashes": [ "192287632054542852697903689963613336569", "266567119568454682048461409231349580146", "102583177618975963310603836794581912607", "260388121199677038340510937733692603295" ] }, "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@65ee90efc928410c6f73b3d2e0afdd762652c09d", "deprecated": false, "signature_version": "v1" } ] }