CVE-2023-52927

Severity CVSS v4.0:
Pending analysis
Type:
CWE-416 Use After Free
Publication date:
14/03/2025
Last modified:
31/12/2025

Description

In the Linux kernel, the following vulnerability has been resolved:<br /> <br /> netfilter: allow exp not to be removed in nf_ct_find_expectation<br /> <br /> Currently nf_conntrack_in() calling nf_ct_find_expectation() will<br /> remove the exp from the hash table. However, in some scenario, we<br /> expect the exp not to be removed when the created ct will not be<br /> confirmed, like in OVS and TC conntrack in the following patches.<br /> <br /> This patch allows exp not to be removed by setting IPS_CONFIRMED<br /> in the status of the tmpl.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 5.18 (including) 6.1.130 (excluding)
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* 6.2 (including) 6.6 (excluding)
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*