cbcvebase.
CVE-2024-26642
published 2024-03-21

CVE-2024-26642: In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: disallow anonymous set with timeout flag Anonymous sets are never…

PriorityP419medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.27%
18.3th percentile
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: disallow anonymous set with timeout flag Anonymous sets are never used with timeout from userspace, reject this. Exception to this rule is NFT_SET_EVAL to ensure legacy meters still work.

Affected

29 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianlinux< linux 6.1.85-1 (bookworm)linux 6.1.85-1 (bookworm)
linuxlinux
linuxlinux>= 761da2935d6e18d178582dbdf315a3a458555505 < e4988d8415bd0294d6f9f4a1e7095f8b50a97ca9e4988d8415bd0294d6f9f4a1e7095f8b50a97ca9
linuxlinux>= 761da2935d6e18d178582dbdf315a3a458555505 < e9a0d3f376eb356d54ffce36e7cc37514cbfbd6fe9a0d3f376eb356d54ffce36e7cc37514cbfbd6f
linuxlinux>= 761da2935d6e18d178582dbdf315a3a458555505 < fe40ffbca19dc70d7c6b1e3c77b9ccb404c57351fe40ffbca19dc70d7c6b1e3c77b9ccb404c57351
linuxlinux>= 761da2935d6e18d178582dbdf315a3a458555505 < 7cdc1be24cc1bcd56a3e89ac4aef20e31ad091997cdc1be24cc1bcd56a3e89ac4aef20e31ad09199
linuxlinux>= 761da2935d6e18d178582dbdf315a3a458555505 < 72c1efe3f247a581667b7d368fff3bd9a03cd57a72c1efe3f247a581667b7d368fff3bd9a03cd57a
linuxlinux>= 761da2935d6e18d178582dbdf315a3a458555505 < c0c2176d1814b92ea4c8e7eb7c9cd94cd99c1b12c0c2176d1814b92ea4c8e7eb7c9cd94cd99c1b12
linuxlinux>= 761da2935d6e18d178582dbdf315a3a458555505 < 8e07c16695583a66e81f67ce4c46e94dece47ba78e07c16695583a66e81f67ce4c46e94dece47ba7
linuxlinux>= 761da2935d6e18d178582dbdf315a3a458555505 < 16603605b667b70da974bea8216c93e7db043bf116603605b667b70da974bea8216c93e7db043bf1
linuxlinux_kernel>= 0 < 5.10.216-15.10.216-1
linuxlinux_kernel>= 0 < 6.1.85-16.1.85-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 5.4.0-189.2095.4.0-189.209
linuxlinux_kernel>= 0 < 5.15.0-116.1265.15.0-116.126
linuxlinux_kernel>= 0 < 4.4.0-256.2904.4.0-256.290
linuxlinux_kernel>= 0 < 4.15.0-226.2384.15.0-226.238
linuxlinux_kernel>= 0 < 5.4.0-189.2095.4.0-189.209
linuxlinux_kernel>= 0 < 5.15.0-116.1265.15.0-116.126
linuxlinux_kernel>= 0 < 6.8.0-36.366.8.0-36.36
linuxlinux_kernel>= 4.1 < 4.19.3124.19.312
linuxlinux_kernel>= 4.20 < 5.4.2745.4.274
linuxlinux_kernel>= 5.11 < 5.15.1545.15.154

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv7.8HIGH
vendor_ubuntu7.0HIGH
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.