CVE-2026-23391

Source
https://cve.org/CVERecord?id=CVE-2026-23391
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-23391.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-23391
Downstream
Published
2026-03-25T10:33:15.677Z
Modified
2026-04-19T04:18:03.588746Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
netfilter: xt_CT: drop pending enqueued packets on template removal
Details

In the Linux kernel, the following vulnerability has been resolved:

netfilter: xt_CT: drop pending enqueued packets on template removal

Templates refer to objects that can go away while packets are sitting in nfqueue refer to:

  • helper, this can be an issue on module removal.
  • timeout policy, nfnetlink_cttimeout might remove it.

The use of templates with zone and event cache filter are safe, since this just copies values.

Flush these enqueued packets in case the template rule gets removed.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/23xxx/CVE-2026-23391.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
24de58f465165298aaa8f286b2592f0163706cfe
Fixed
55445134d42b84cb0a272e42c98d233ca65eca83
Fixed
cc57506dd66555899560b9c0f24e813f034e12ec
Fixed
d2d0bae0c9a2a17b6990a2966f5cdce0813d6256
Fixed
63b8097cea1923fe82cd598068d0796da8c015ec
Fixed
19a230dec6bb8928e3f96387f9085cf2c79bcef9
Fixed
cb549925875fa06dd155e49db4ac2c5044c30f9c
Fixed
777d02efe3d630cca4c1b63962cec17c57711325
Fixed
f62a218a946b19bb59abdd5361da85fa4606b96b

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-23391.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.4.0
Fixed
5.10.253
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.203
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.167
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.130
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.78
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.20
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
6.19.10

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-23391.json"