CVE-2024-27017

netfilter: nft_set_pipapo: walk over current view on netlink dump

References

Notes

 carnil> Introduced in 2b84e215f874 ("netfilter: nft_set_pipapo: .walk does not deal
 carnil> with generations"). Vulnerable versions: 5.10.186 5.15.119 6.1.36 6.3.10 6.4.

Bugs

Status

Branch Status
4.19-buster-security N/A "Vulnerable code not present"
4.19-upstream-stable N/A "Vulnerable code not present"
5.10-bullseye-security needed
5.10-upstream-stable needed
6.1-bookworm-security needed
6.1-upstream-stable needed
6.6-upstream-stable needed
6.8-upstream-stable released (6.8.8) [721715655c72640567e8742567520c99801148ed]
sid needed
upstream released (6.9-rc5) [29b359cf6d95fd60730533f7f10464e95bd17c73]