CVE-2024-27012

netfilter: nf_tables: restore set elements when delete set fails

References

Notes

 carnil> Introduced in 628bd3e49cba ("netfilter: nf_tables: drop map element references
 carnil> from preparation phase"). Vulnerable versions: 5.4.262 5.10.188 5.15.121 6.1.36
 carnil> 6.3.10 6.4.

Bugs

Status

Branch Status
4.19-buster-security N/A "Vulnerable code not present"
4.19-upstream-stable N/A "Vulnerable code not present"
5.10-bullseye-security needed
5.10-upstream-stable needed
6.1-bookworm-security needed
6.1-upstream-stable needed
6.6-upstream-stable needed
6.8-upstream-stable released (6.8.8) [86658fc7414d4b9e25c2699d751034537503d637]
sid needed
upstream released (6.9-rc5) [e79b47a8615d42c68aaeb68971593333667382ed]