CVE-2024-26581
In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_rbtree: skip end interval element from gc rbtree lazy gc on insert might collect an end interval element that has been just added in this transactions, skip end…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (2.22%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_rbtree: skip end interval element from gc rbtree lazy gc on insert might collect an end interval element that has been just added in this transactions, skip end interval elements that are not yet active.
- CVSS 3.1
- 7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 2.22% probability · 82th percentile
- CISA KEV
- Not listed
- Affected
- debian/debian linux · linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/10e9cb39313627f2eae4cd70c4b742074e998fd8Patch
- https://git.kernel.org/stable/c/1296c110c5a0b45a8fcf58e7d18bc5da61a565cbPatch
- https://git.kernel.org/stable/c/2bab493a5624444ec6e648ad0d55a362bcb4c003Patch
- https://git.kernel.org/stable/c/4cee42fcf54fec46b344681e7cc4f234bb22f85aPatch
- https://git.kernel.org/stable/c/60c0c230c6f046da536d3df8b39a20b9a9fd6af0Patch
- https://git.kernel.org/stable/c/6eb14441f10602fa1cf691da9d685718b68b78a9Patch
- https://git.kernel.org/stable/c/b734f7a47aeb32a5ba298e4ccc16bb0c52b6dbf7Patch
- https://git.kernel.org/stable/c/c60d252949caf9aba537525195edae6bbabc35ebPatch
- https://git.kernel.org/stable/c/10e9cb39313627f2eae4cd70c4b742074e998fd8Patch
- https://git.kernel.org/stable/c/1296c110c5a0b45a8fcf58e7d18bc5da61a565cbPatch
- https://git.kernel.org/stable/c/2bab493a5624444ec6e648ad0d55a362bcb4c003Patch
- https://git.kernel.org/stable/c/4cee42fcf54fec46b344681e7cc4f234bb22f85aPatch
- https://git.kernel.org/stable/c/60c0c230c6f046da536d3df8b39a20b9a9fd6af0Patch
- https://git.kernel.org/stable/c/6eb14441f10602fa1cf691da9d685718b68b78a9Patch
- https://git.kernel.org/stable/c/b734f7a47aeb32a5ba298e4ccc16bb0c52b6dbf7Patch
- https://git.kernel.org/stable/c/c60d252949caf9aba537525195edae6bbabc35ebPatch
- https://lists.debian.org/debian-lts-announce/2024/06/msg00017.htmlMailing List, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.