A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation.
On an error when building a nftables rule, deactivating immediate expressions in nftimmediatedeactivate() can lead unbinding the chain and objects be deactivated but later used.
We recommend upgrading past commit 0a771f7b266b02d262900c75f1e175c7fe76fec2.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-4015.json"
[
{
"digest": {
"function_hash": "106986635004181637049732495453046640851",
"length": 883.0
},
"signature_version": "v1",
"target": {
"file": "net/netfilter/nft_immediate.c",
"function": "nft_immediate_deactivate"
},
"signature_type": "Function",
"id": "CVE-2023-4015-8e60738a",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@0a771f7b266b02d262900c75f1e175c7fe76fec2",
"deprecated": false
},
{
"digest": {
"line_hashes": [
"48422612036045987737874108204576609111",
"118063843748332918279958404550380915171",
"43573224862758184230230339715558160707",
"337979644651424405366251411413146055080",
"144423683268939992905835710168038714213",
"219964144971886997708090457925362818071",
"39329090978911861419663595756600280991",
"242092190136397637732711819782228786328",
"210022570035597220410502071466200594206",
"333862016568735541495682862728423942030",
"304217802293265552784858173960035866050",
"263259446630167301135582539040438812860",
"89209027262872776205625838714676158292",
"337943504775389019895472599363555463678",
"192311196581317989051887350587694705711",
"87539256380094739927160783102365417547",
"115449463219087581821400190812171376301",
"30761641223877357519250970813713123505",
"218060264794320103233936120515358234305",
"14766900344397018136101630692148705144",
"172031313549848403349299538403022750560",
"320871287178364420572263404526741257149",
"171329751382880396365895411791058494411",
"269075322028865373417476495710226783194",
"51672954193468774466521831195998518383",
"260184324287941502129220063687210581345",
"87862248617641068100141805662628348556"
],
"threshold": 0.9
},
"signature_version": "v1",
"target": {
"file": "net/netfilter/nft_immediate.c"
},
"signature_type": "Line",
"id": "CVE-2023-4015-b167f26f",
"source": "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git@0a771f7b266b02d262900c75f1e175c7fe76fec2",
"deprecated": false
}
]