Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2023-3610
Description:A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. Flaw in the error handling of bound chains causes a use- after-free in the abort path of NFT_MSG_NEWRULE. The vulnerability requires CAP_NET_ADMIN to be triggered. We recommend upgrading past commit 4bedf9eee016286c835e3d8fa981ddece5338795.
Test IDs: 1.3.6.1.4.1.25623.1.1.1.2.2023.3512   1.3.6.1.4.1.25623.1.1.1.1.2023.5461  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2023-3610
Debian Security Information: DSA-5461 (Google Search)
https://www.debian.org/security/2023/dsa-5461
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit?id=4bedf9eee016286c835e3d8fa981ddece5338795
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit?id=4bedf9eee016286c835e3d8fa981ddece5338795
https://kernel.dance/4bedf9eee016286c835e3d8fa981ddece5338795
https://kernel.dance/4bedf9eee016286c835e3d8fa981ddece5338795
https://lists.debian.org/debian-lts-announce/2023/08/msg00001.html




© 1998-2025 E-Soft Inc. All rights reserved.