CVE-2023-54035Linux vulnerability

7 documents6 sources
Severity
4.7MEDIUM
No vector
EPSS
0.0%
top 93.24%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 24

Description

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix underflow in chain reference counter Set element addition error path decrements reference counter on chains twice: once on element release and again via nft_data_release(). Then, d6b478666ffa ("netfilter: nf_tables: fix underflow in object reference counter") incorrectly fixed this by removing the stateful object reference count decrement. Restore the stateful object decrement as in b91d90368837 ("n

Affected Packages4 packages

Linuxlinux/linux_kernel6.4.06.4.4
Debianlinux/linux_kernel< 6.1.52-1+2
CVEListV5linux/linux35651fde1a7bb54dde0a46d35cd0d7136869ae86b068314fd8ce751a7f906e55bb90f3551815f1a0+9
debiandebian/linux< linux 6.1.52-1 (bookworm)

🔴Vulnerability Details

3
OSV
CVE-2023-54035: In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix underflow in chain reference counter Set element additio2025-12-24
OSV
netfilter: nf_tables: fix underflow in chain reference counter2025-12-24
GHSA
GHSA-pcf2-g46w-wp92: In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix underflow in chain reference counter Set element addit2025-12-24

📋Vendor Advisories

2
Red Hat
kernel: netfilter: nf_tables: fix underflow in chain reference counter2025-12-24
Debian
CVE-2023-54035: linux - In the Linux kernel, the following vulnerability has been resolved: netfilter: ...2023

🕵️Threat Intelligence

1
Wiz
CVE-2023-54035 Impact, Exploitability, and Mitigation Steps | Wiz