CVE-2025-22064

Source
https://cve.org/CVERecord?id=CVE-2025-22064
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-22064.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2025-22064
Downstream
Related
Published
2025-04-16T14:12:18.870Z
Modified
2026-03-20T12:41:18.206037Z
Summary
netfilter: nf_tables: don't unregister hook when table is dormant
Details

In the Linux kernel, the following vulnerability has been resolved:

netfilter: nf_tables: don't unregister hook when table is dormant

When nftablesupdchain encounters an error, hook registration needs to be rolled back.

This should only be done if the hook has been registered, which won't happen when the table is flagged as dormant (inactive).

Just move the assignment into the registration block.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/22xxx/CVE-2025-22064.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
b9703ed44ffbfba85c103b9de01886a225e14b38
Fixed
6134d1ea1e1408e8e7c8c26545b3b301cbdf1eda
Fixed
feb1fa2a03a27fec7001e93e4223be4120d1784b
Fixed
03d1fb457b696c18fe15661440c4f052b2374e7e
Fixed
ce571eba07d54e3637bf334bc48376fbfa55defe
Fixed
688c15017d5cd5aac882400782e7213d40dc3556
Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
d131ce7a319d3bff68d5a9d5509bb22e4ce33946

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2025-22064.json"