Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's netfilter component, specifically within the nf_tables subsystem, has been addressed. This issue involved the management of hook transactions during the deletion of device hooks, which could disrupt the proper functioning of netlink dump operations. The vulnerability arose because the previous method of handling hook deletions interfered with readers of the RCU-protected hook list, leading to potential inconsistencies.
The vulnerability could cause netlink dump operations to misread the state of hook transactions, potentially leading to incorrect behavior in applications or services that rely on these netlink messages.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.