In the Linux kernel, the following vulnerability has been resolved: netfilter: bridge: replace physindev with physinif in nf_bridge_info An skb can be added to a neigh->arp_queue while waiting for …
High CVSS 7.8
Summary
In the Linux kernel, the following vulnerability has been resolved: netfilter: bridge: replace physindev with physinif in nf_bridge_info An skb can be added to a neigh->arp_queue while waiting for an arp reply. Where original skb's skb->dev can be different to neigh's neigh->dev. For instance in case of bridging dnated skb from one veth to another, the skb would be added to a neigh->arp_queue of the bridge. As skb->dev can be reset back to nf_bridge->physindev and used, and as there is no ex…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/544add1f1cfb78c3dfa3e6edcf4668f6be5e730c Patch
- https://git.kernel.org/stable/c/7ae19ee81ca56b13c50a78de6c47d5b8fdc9d97b Patch
- https://git.kernel.org/stable/c/9325e3188a9cf3f69fc6f32af59844bbc5b90547 Patch
- https://git.kernel.org/stable/c/9874808878d9eed407e3977fd11fee49de1e1d86 Patch
- https://git.kernel.org/stable/c/544add1f1cfb78c3dfa3e6edcf4668f6be5e730c Patch
- https://git.kernel.org/stable/c/7ae19ee81ca56b13c50a78de6c47d5b8fdc9d97b Patch
- https://git.kernel.org/stable/c/9325e3188a9cf3f69fc6f32af59844bbc5b90547 Patch
- https://git.kernel.org/stable/c/9874808878d9eed407e3977fd11fee49de1e1d86 Patch
Timeline
- nvd_ingest NVD