CVE-2023-52927
Severity CVSS v4.0:
Pending analysis
Type:
CWE-416
Use After Free
Publication date:
14/03/2025
Last modified:
31/12/2025
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
netfilter: allow exp not to be removed in nf_ct_find_expectation<br />
<br />
Currently nf_conntrack_in() calling nf_ct_find_expectation() will<br />
remove the exp from the hash table. However, in some scenario, we<br />
expect the exp not to be removed when the created ct will not be<br />
confirmed, like in OVS and TC conntrack in the following patches.<br />
<br />
This patch allows exp not to be removed by setting IPS_CONFIRMED<br />
in the status of the tmpl.
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 5.18 (including) | 6.1.130 (excluding) |
| cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | 6.2 (including) | 6.6 (excluding) |
| cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



