cbcvebase.
CVE-2024-26581
published 2024-02-20

CVE-2024-26581: In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_rbtree: skip end interval element from gc rbtree lazy gc on insert might…

PriorityP340high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
2.22%
80.9th percentile
In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_rbtree: skip end interval element from gc rbtree lazy gc on insert might collect an end interval element that has been just added in this transactions, skip end interval elements that are not yet active.

Affected

40 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.82-1 (bookworm)linux 6.1.82-1 (bookworm)
linuxlinux
linuxlinux
linuxlinux>= 5.10.190 < 5.10.2105.10.210
linuxlinux>= 5.15.124 < 5.15.1495.15.149
linuxlinux>= 5.4.262 < 5.4.2695.4.269
linuxlinux>= 50cbb9d195c197af671869c8cadce3bd483735a0 < 2bab493a5624444ec6e648ad0d55a362bcb4c0032bab493a5624444ec6e648ad0d55a362bcb4c003
linuxlinux>= 6.1.43 < 6.1.786.1.78
linuxlinux>= 6.4.8 < 6.56.5
linuxlinux>= 8284a79136c384059e85e278da2210b809730287 < c60d252949caf9aba537525195edae6bbabc35ebc60d252949caf9aba537525195edae6bbabc35eb
linuxlinux>= 893cb3c3513cf661a0ff45fe0cfa83fe27131f76 < 4cee42fcf54fec46b344681e7cc4f234bb22f85a4cee42fcf54fec46b344681e7cc4f234bb22f85a
linuxlinux>= 89a4d1a89751a0fbd520e64091873e19cc0979e8 < 1296c110c5a0b45a8fcf58e7d18bc5da61a565cb1296c110c5a0b45a8fcf58e7d18bc5da61a565cb
linuxlinux>= acaee227cf79c45a5d2d49c3e9a66333a462802c < 10e9cb39313627f2eae4cd70c4b742074e998fd810e9cb39313627f2eae4cd70c4b742074e998fd8
linuxlinux>= f718863aca469a109895cb855e6b81fff4827d71 < b734f7a47aeb32a5ba298e4ccc16bb0c52b6dbf7b734f7a47aeb32a5ba298e4ccc16bb0c52b6dbf7
linuxlinux>= f718863aca469a109895cb855e6b81fff4827d71 < 6eb14441f10602fa1cf691da9d685718b68b78a96eb14441f10602fa1cf691da9d685718b68b78a9
linuxlinux>= f718863aca469a109895cb855e6b81fff4827d71 < 60c0c230c6f046da536d3df8b39a20b9a9fd6af060c0c230c6f046da536d3df8b39a20b9a9fd6af0
linuxlinux_kernel>= 0 < 5.10.216-15.10.216-1
linuxlinux_kernel>= 0 < 6.1.82-16.1.82-1
linuxlinux_kernel>= 0 < 6.7.7-16.7.7-1
linuxlinux_kernel>= 0 < 6.7.7-16.7.7-1
linuxlinux_kernel>= 0 < 5.4.0-177.1975.4.0-177.197
linuxlinux_kernel>= 0 < 5.15.0-105.1155.15.0-105.115
linuxlinux_kernel>= 0 < 5.4.0-189.2095.4.0-189.209
linuxlinux_kernel>= 0 < 5.15.0-112.1225.15.0-112.122

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_msrc7.8HIGH
vendor_redhat7.8HIGH
vendor_ubuntu7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.