In the Linux kernel, the following vulnerability has been resolved: net/sched: Fix UAF when resolving a clash KASAN reports the following UAF: BUG: KASAN: slab-use-after-free in tcf_ct_flow_table…
Critical CVSS 9.8
Summary
In the Linux kernel, the following vulnerability has been resolved: net/sched: Fix UAF when resolving a clash KASAN reports the following UAF: BUG: KASAN: slab-use-after-free in tcf_ct_flow_table_process_conn+0x12b/0x380 [act_ct] Read of size 1 at addr ffff888c07603600 by task handler130/6469 Call Trace: <IRQ> dump_stack_lvl+0x48/0x70 print_address_description.constprop.0+0x33/0x3d0 print_report+0xc0/0x2b0 kasan_report+0xd0/0x120 __asan_load1+0x6c/0x80 tcf_ct_flow_table_pro…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/26488172b0292bed837b95a006a3f3431d1898c3 Patch
- https://git.kernel.org/stable/c/2b4d68df3f57ea746c430941ba9c03d7d8b5a23f Patch
- https://git.kernel.org/stable/c/4e71b10a100861fb27d9c5755dfd68f615629fae Patch
- https://git.kernel.org/stable/c/799a34901b634008db4a7ece3900e2b971d4c932 Patch
- https://git.kernel.org/stable/c/b81a523d54ea689414f67c9fb81a5b917a41ed55 Patch
- https://git.kernel.org/stable/c/ef472cc6693b16b202a916482df72f35d94bd69e Patch
- https://git.kernel.org/stable/c/26488172b0292bed837b95a006a3f3431d1898c3 Patch
- https://git.kernel.org/stable/c/2b4d68df3f57ea746c430941ba9c03d7d8b5a23f Patch
- https://git.kernel.org/stable/c/4e71b10a100861fb27d9c5755dfd68f615629fae Patch
- https://git.kernel.org/stable/c/799a34901b634008db4a7ece3900e2b971d4c932 Patch
- https://git.kernel.org/stable/c/b81a523d54ea689414f67c9fb81a5b917a41ed55 Patch
- https://git.kernel.org/stable/c/ef472cc6693b16b202a916482df72f35d94bd69e Patch
- https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html
Timeline
- nvd_ingest NVD