[UBUNTU OEM-5.14, Jammy, HWE-5.17, Kinetic, OEM-6.0, Lunar, OEM-6.1, Unstable 0/1] CVE-2023-0179
Thadeu Lima de Souza Cascardo
cascardo at canonical.com
Wed Jan 18 18:58:04 UTC 2023
[Impact]
An unprivileged user may escalate privileges by using netfilter VLAN support and
user/network namespaces.
[Testing]
Could not reproduce with PoC at https://seclists.org/oss-sec/2023/q1/20.
[Potential regression]
netfilter rules may break.
Pablo Neira Ayuso (1):
netfilter: nft_payload: incorrect arithmetics when fetching VLAN
header bits
net/netfilter/nft_payload.c | 2 +-
1 file changed, 1 insertion(+), 1 deletion(-)
--
2.34.1
More information about the kernel-team
mailing list