[UBUNTU OEM-5.14, Jammy, HWE-5.17, Kinetic, OEM-6.0, Lunar, OEM-6.1, Unstable 0/1] CVE-2023-0179

Thadeu Lima de Souza Cascardo cascardo at canonical.com
Wed Jan 18 18:58:04 UTC 2023


[Impact]
An unprivileged user may escalate privileges by using netfilter VLAN support and
user/network namespaces.

[Testing]
Could not reproduce with PoC at https://seclists.org/oss-sec/2023/q1/20.

[Potential regression]
netfilter rules may break.

Pablo Neira Ayuso (1):
  netfilter: nft_payload: incorrect arithmetics when fetching VLAN
    header bits

 net/netfilter/nft_payload.c | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)

-- 
2.34.1




More information about the kernel-team mailing list