In the Linux kernel, the following vulnerability has been resolved:
netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations
- Disallow families other than NFPROTO_{IPV4,IPV6,INET}.
- Disallow layer 4 protocol with no ports, since destination port is a
mandatory attribute for this object.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
No history.
Information
Published : 2024-04-02 07:15
Updated : 2025-03-17 15:43
NVD link : CVE-2024-26673
Mitre link : CVE-2024-26673
CVE.ORG link : CVE-2024-26673
JSON object : View
Products Affected
debian
- debian_linux
linux
- linux_kernel
CWE
