Updated: 2023-12-06
CWE: Security Features
Description:
net/netfilter/xt_osf.c in the Linux kernel through 4.14.4 does not require the CAP_NET_ADMIN capability for add_callback and remove_callback operations, which allows local users to bypass intended access restrictions because the xt_osf_fingers data structure is shared across all net namespaces.
CVSS3: 7.8
OS | Vendor version | Errata |
---|---|---|
Ubuntu 16.04 | 4.4.0-119.143 | USN-3619-1 |
Ubuntu 14.04 | 3.13.0-142.191 | USN-3583-1 |
Ubuntu 16.04 AWS | 4.4.0-1054.63 | USN-3619-1 |
Ubuntu 14.04 HWE | 4.4.0-119.143~14.04.1 | USN-3619-2 |
Debian 9 | 4.9.65-3+deb9u1 | DSA-4073-1 |
Debian 8 | 3.16.51-3+deb8u1 | DSA-4082-1 |
Debian 8 backports | 4.9.65-3+deb9u1 | DSA-4073-1 |
Ubuntu 16.04 (FIPS) | 4.4.0-119.143 | usn-3619-1 |
OS | Original kernel version | State |
---|---|---|
Ubuntu 16.04 |
4.4.0-83.106
show all
hide all
4.4.0-98.121
4.4.0-72.93
4.4.0-79.100
4.4.0-108.131
4.4.0-116.140
4.4.0-96.119
4.4.0-64.85
4.4.0-112.135
4.4.0-34.53
4.4.0-22.40
4.4.0-103.126
4.4.0-78.99
4.4.0-31.50
4.4.0-62.83
4.4.0-91.114
4.4.0-97.120
4.4.0-28.47
4.4.0-89.112
4.4.0-63.84
4.4.0-24.43
4.4.0-38.57
4.4.0-47.68
4.4.0-67.88
4.4.0-81.104
4.4.0-22.39
4.4.0-93.116
4.4.0-42.62
4.4.0-75.96
4.4.0-101.124
4.4.0-36.55
4.4.0-51.72
4.4.0-53.74
4.4.0-87.110
4.4.0-104.127
4.4.0-21.37
4.4.0-23.41
4.4.0-43.63
4.4.0-65.86
4.4.0-70.91
4.4.0-77.98
4.4.0-92.115
4.4.0-109.132
4.4.0-45.66
4.4.0-66.87
4.4.0-71.92
4.4.0-57.78
4.4.0-59.80
|
Released |
Ubuntu 14.04 |
3.13.0-38.65
show all
hide all
3.13.0-40.68
3.13.0-45.74
3.13.0-46.76
3.13.0-46.77
3.13.0-52.86
3.13.0-53.87
3.13.0-55.94
3.13.0-61.100
3.13.0-62.101
3.13.0-64.104
3.13.0-66.107
3.13.0-69.112
3.13.0-72.115
3.13.0-75.119
3.13.0-53.88
3.13.0-39.66
3.13.0-65.106
3.13.0-57.95
3.13.0-92.139
3.13.0-96.143
3.13.0-37.64
3.13.0-95.142
3.13.0-49.83
3.13.0-125.174
3.13.0-115.162
3.13.0-68.111
3.13.0-59.98
3.13.0-101.148
3.13.0-100.147
3.13.0-117.164
3.13.0-71.114
3.13.0-107.154
3.13.0-86.130
3.13.0-91.138
3.13.0-67.110
3.13.0-70.113
3.13.0-106.153
3.13.0-76.120
3.13.0-116.163
3.13.0-41.70
3.13.0-36.63
3.13.0-44.73
3.13.0-49.81
3.13.0-85.129
3.13.0-86.131
3.13.0-46.75
3.13.0-112.159
3.13.0-40.69
3.13.0-98.145
3.13.0-119.166
3.13.0-126.175
3.13.0-108.155
3.13.0-137.186
3.13.0-33.58
3.13.0-105.152
3.13.0-110.157
3.13.0-132.181
3.13.0-133.182
3.13.0-43.72
3.13.0-73.116
3.13.0-51.84
3.13.0-62.102
3.13.0-83.127
3.13.0-129.178
3.13.0-54.91
3.13.0-109.156
3.13.0-111.158
3.13.0-113.160
3.13.0-123.172
3.13.0-128.177
3.13.0-139.188
3.13.0-32.57
3.13.0-58.97
3.13.0-65.105
3.13.0-77.121
3.13.0-46.79
3.13.0-74.118
3.13.0-135.184
3.13.0-141.190
3.13.0-34.60
3.13.0-35.62
3.13.0-48.80
3.13.0-52.85
3.13.0-66.108
3.13.0-87.133
3.13.0-93.140
3.13.0-103.150
3.13.0-121.170
3.13.0-63.103
3.13.0-88.135
3.13.0-55.92
3.13.0-53.89
3.13.0-79.123
|
Released |
Ubuntu 16.04 AWS |
4.4.0-1031.40
show all
hide all
4.4.0-1037.46
4.4.0-1044.53
4.4.0-1050.59
4.4.0-1020.29
4.4.0-1039.48
4.4.0-1035.44
4.4.0-1026.35
4.4.0-1012.21
4.4.0-1017.26
4.4.0-1016.25
4.4.0-1013.22
4.4.0-1030.39
4.4.0-1052.61
4.4.0-1038.47
4.4.0-1028.37
4.4.0-1049.58
4.4.0-1043.52
4.4.0-1022.31
4.4.0-1041.50
4.4.0-1048.57
4.4.0-1018.27
4.4.0-1032.41
4.4.0-1047.56
|
Released |
Ubuntu 14.04 HWE |
4.4.0-101.124~14.04.1
show all
hide all
4.4.0-91.114~14.04.1
4.4.0-71.92~14.04.1
4.4.0-97.120~14.04.1
4.4.0-34.53~14.04.1
4.4.0-51.72~14.04.1
4.4.0-79.100~14.04.1
4.4.0-96.119~14.04.1
4.4.0-63.84~14.04.2
4.4.0-81.104~14.04.1
4.4.0-108.131~14.04.1
4.4.0-89.112~14.04.1
4.4.0-66.87~14.04.1
4.4.0-98.121~14.04.1
4.4.0-53.74~14.04.1
4.4.0-28.47~14.04.1
4.4.0-57.78~14.04.1
4.4.0-111.134~14.04.1
4.4.0-78.99~14.04.2
4.4.0-62.83~14.04.1
4.4.0-64.85~14.04.1
4.4.0-24.43~14.04.1
4.4.0-93.116~14.04.1
4.4.0-47.68~14.04.1
4.4.0-103.126~14.04.1
4.4.0-83.106~14.04.1
4.4.0-31.50~14.04.1
4.4.0-42.62~14.04.1
4.4.0-22.40~14.04.1
4.4.0-38.57~14.04.1
4.4.0-72.93~14.04.1
4.4.0-109.132~14.04.1
4.4.0-112.135~14.04.1
4.4.0-21.37~14.04.1
4.4.0-23.41~14.04.1
4.4.0-65.86~14.04.1
4.4.0-70.91~14.04.1
4.4.0-92.115~14.04.1
4.4.0-104.127~14.04.1
4.4.0-87.110~14.04.1
4.4.0-75.96~14.04.1
4.4.0-116.140~14.04.1
4.4.0-36.55~14.04.1
4.4.0-59.80~14.04.1
4.4.0-67.88~14.04.1
4.4.0-45.66~14.04.1
4.4.0-22.39~14.04.1
|
Released |
Debian 9 |
4.9.30-2+deb9u2
show all
hide all
4.9.30-2
4.9.65-3
4.9.30-2+deb9u1
4.9.51-1
4.9.30-2+deb9u5
4.9.65-1
4.9.30-2+deb9u4
4.9.30-2+deb9u3
|
Released |
Debian 8 |
3.16.7-ckt9-3~deb8u1
show all
hide all
3.16.39-1+deb8u2
3.16.51-1
3.16.7-ckt11-1+deb8u2
3.16.7-ckt20-1+deb8u2
3.16.7-ckt11-1+deb8u3
3.16.43-2+deb8u4
3.16.7-ckt20-1+deb8u4
3.16.7-ckt25-2+deb8u2
3.16.36-1+deb8u2
3.16.43-2+deb8u3
3.16.7-ckt11-1+deb8u4
3.16.7-ckt25-1
3.16.7-ckt25-2
3.16.7-ckt11-1+deb8u5
3.16.7-ckt20-1+deb8u3
3.16.39-1
3.16.43-2+deb8u1
3.16.7-ckt11-1+deb8u6
3.16.48-1
3.16.43-2+deb8u2
3.16.43-2
3.16.51-2
3.16.51-3
3.16.7-ckt25-2+deb8u1
3.16.7-ckt11-1+deb8u1
3.16.36-1+deb8u1
3.16.39-1+deb8u1
3.16.43-2+deb8u5
3.16.7-ckt11-1
3.16.7-ckt25-2+deb8u3
3.16.7-ckt20-1+deb8u1
|
Released |
Debian 8 backports |
4.9.30-2+deb9u2~bpo8+1
show all
hide all
4.9.30-2+deb9u5~bpo8+1
4.9.30-2~bpo8+1
4.9.51-1~bpo8+1
4.9.65-3~bpo8+1
|
Released |
Endurance 6 elrepo |
4.4.112-1.el6.elrepo
|
Released |
Endurance 7 eig 4.14 | |
Ready For Release |
Proofpoint | |
Ready For Release |
Debian 10 cloud | |
Will Not Fix |
Debian 9 backports | |
Will Not Fix |
Ubuntu 16.04 (FIPS) |
4.4.0-1002.2
show all
hide all
4.4.0-1003.3
4.4.0-1005.5
4.4.0-1006.6
|
Released |