CVE-2023-4147

Updated: 2023-11-21

CWE: CWE-416: Use After Free

Description:

A use-after-free flaw was found in the Linux kernel’s Netfilter functionality when adding a rule with NFTA_RULE_CHAIN_ID. This flaw allows a local user to crash or escalate their privileges on the system.

CVSS3: 7.8


Vendor State

OS Vendor version Errata
RHEL9 EUS 9.0 5.14.0-70.80.1.el9_0 RHSA-2023:7382
Debian 11 5.10.191-1 DSA-5480-1
Debian 12 6.1.52-1 DSA-5492-1
AlmaLinux 9 5.14.0-284.30.1.el9_2 ALSA-2023:5069
Debian 11 cloud 5.10.191-1 DSA-5480-1
Ubuntu 22.04 Azure 5.15.0-1045.52 USN-6332-1
Ubuntu 22.04 AWS 5.15.0-1043.48 USN-6315-1
Ubuntu 22.04 5.15.0-82.91 USN-6315-1
Oracle Linux 9 5.14.0-284.30.0.1.el9_2 ELSA-2023-5069
RHEL 9 5.14.0-284.30.1.el9_2 RHSA-2023:5069
Amazon Linux 2 5.10 5.10.192-182.736.amzn2 ALASKERNEL-5.10-2023-039
Rocky Linux 9 5.14.0-284.30.1.el9_2 RLSA-2023:5069

KernelCare State

OS Original kernel version State
RHEL9 EUS 9.0
Planned
Debian 11
In Progress
Debian 12
Planned
AlmaLinux 9
5.14.0-162.12.1.el9_1 show all hide all
5.14.0-162.18.1.el9_1 5.14.0-162.22.2.el9_1 5.14.0-162.23.1.el9_1 5.14.0-162.6.1.el9_1 5.14.0-284.11.1.el9_2 5.14.0-284.18.1.el9_2 5.14.0-284.25.1.el9_2 5.14.0-70.13.1.el9_0 5.14.0-70.17.1.el9_0 5.14.0-70.22.1.el9_0 5.14.0-70.26.1.el9_0 5.14.0-70.30.1.el9_0
Released
Debian 11 cloud
In Progress
Ubuntu 22.04 Azure
Will Not Fix
Ubuntu 22.04 AWS
Will Not Fix
Ubuntu 22.04
Will Not Fix
Oracle Linux 9
5.14.0-284.25.1.el9_2 show all hide all
5.14.0-70.13.1.0.3.el9_0 5.14.0-70.17.1.0.1.el9_0 5.14.0-70.22.1.0.1.el9_0 5.14.0-70.26.1.0.1.el9_0 5.14.0-162.12.1.el9_1 5.14.0-162.18.1.el9_1 5.14.0-162.22.2.el9_1 5.14.0-162.23.1.el9_1 5.14.0-162.6.1.el9_1 5.14.0-284.11.1.el9_2 5.14.0-284.18.1.el9_2
Released
RHEL 9
5.14.0-162.12.1.el9_1 show all hide all
5.14.0-162.18.1.el9_1 5.14.0-162.22.2.el9_1 5.14.0-162.23.1.el9_1 5.14.0-162.6.1.el9_1 5.14.0-284.11.1.el9_2 5.14.0-284.18.1.el9_2 5.14.0-284.25.1.el9_2 5.14.0-70.13.1.el9_0 5.14.0-70.17.1.el9_0 5.14.0-70.22.1.el9_0 5.14.0-70.26.1.el9_0 5.14.0-70.30.1.el9_0 5.14.0-70.5.1.el9_0
Released
Amazon Linux 2 5.10
Planned
Rocky Linux 9
5.14.0-162.12.1.el9_1.0.1 show all hide all
5.14.0-162.12.1.el9_1.0.2 5.14.0-162.18.1.el9_1 5.14.0-162.22.2.el9_1 5.14.0-162.23.1.el9_1 5.14.0-162.6.1.el9_1.0.1 5.14.0-162.6.1.el9_1 5.14.0-70.22.1.el9_0 5.14.0-70.26.1.el9_0 5.14.0-70.30.1.el9_0
Released