CVE-2024-26642

netfilter: nf_tables: disallow anonymous set with timeout flag

References

Notes

 carnil> Introduced in 761da2935d6e ("netfilter: nf_tables: add set timeout API
 carnil> support"). Vulnerable versions: 4.1-rc1.

Bugs

Status

Branch Status
4.19-buster-security needed
4.19-upstream-stable released (4.19.312) [e4988d8415bd0294d6f9f4a1e7095f8b50a97ca9]
5.10-bullseye-security released (5.10.216-1)
5.10-upstream-stable released (5.10.215) [fe40ffbca19dc70d7c6b1e3c77b9ccb404c57351]
6.1-bookworm-security released (6.1.85-1)
6.1-upstream-stable released (6.1.84) [72c1efe3f247a581667b7d368fff3bd9a03cd57a]
6.6-upstream-stable released (6.6.24) [c0c2176d1814b92ea4c8e7eb7c9cd94cd99c1b12]
6.8-upstream-stable N/A "Fixed before branching point"
sid released (6.7.12-1)
upstream released (6.8) [16603605b667b70da974bea8216c93e7db043bf1]