ACK: [SRU Focal,Jammy 0/1] CVE-2023-6040
Roxana Nicolescu
roxana.nicolescu at canonical.com
Fri Jan 5 08:53:10 UTC 2024
On 05/01/2024 03:12, Thadeu Lima de Souza Cascardo wrote:
> [Impact]
> Users allowed to use unprivileged user/network namespaces may cause an
> out-of-bounds access when creating nftables tables on a unknown family.
>
> [Test case]
> PoC was tested.
>
> [Potential regression]
> nftables users may regress.
>
> Phil Sutter (1):
> netfilter: nf_tables: Reject tables of unsupported family
>
> net/netfilter/nf_tables_api.c | 27 +++++++++++++++++++++++++++
> 1 file changed, 27 insertions(+)
>
Acked-by: Roxana Nicolescu <roxana.nicolescu at canonical.com>
More information about the kernel-team
mailing list