Vulnerabilities > CVE-2023-5197 - Use After Free vulnerability in Linux Kernel

047910
CVSS 6.6 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
LOW
Integrity impact
LOW
Availability impact
HIGH
local
low complexity
linux
CWE-416

Summary

A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. Addition and removal of rules from chain bindings within the same transaction causes leads to use-after-free. We recommend upgrading past commit f15f29fd4779be8a418b66e9d52979bb6d6c2325.

Vulnerable Configurations

Part Description Count
OS
Linux
910

Common Weakness Enumeration (CWE)