cbcvebase.
CVE-2024-27064
published 2024-05-01

CVE-2024-27064: In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: Fix a memory leak in nf_tables_updchain If…

PriorityP415medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.22%
12.9th percentile
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: Fix a memory leak in nf_tables_updchain If nft_netdev_register_hooks() fails, the memory associated with nft_stats is not freed, causing a memory leak. This patch fixes it by moving nft_stats_alloc() down after nft_netdev_register_hooks() succeeds.

Affected

15 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.7.12-1 (forky)linux 6.7.12-1 (forky)
linuxlinux
linuxlinux
linuxlinux>= 6.3.3 < 6.46.4
linuxlinux>= b9703ed44ffbfba85c103b9de01886a225e14b38 < 79846fdcc548d617b0b321addc6a3821d3b75b2079846fdcc548d617b0b321addc6a3821d3b75b20
linuxlinux>= b9703ed44ffbfba85c103b9de01886a225e14b38 < 4e4623a4f6e133e671f65f9ac493bddaaf63e2504e4623a4f6e133e671f65f9ac493bddaaf63e250
linuxlinux>= b9703ed44ffbfba85c103b9de01886a225e14b38 < e77a6b53a3a547b6dedfc40c37cee4f310701090e77a6b53a3a547b6dedfc40c37cee4f310701090
linuxlinux>= b9703ed44ffbfba85c103b9de01886a225e14b38 < 7eaf837a4eb5f74561e2486972e7f5184b613f6e7eaf837a4eb5f74561e2486972e7f5184b613f6e
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 6.7.12-16.7.12-1
linuxlinux_kernel>= 0 < 6.8.0-35.356.8.0-35.35
linuxlinux_kernel>= 6.3.3 < 6.46.4
linuxlinux_kernel>= 6.4 < 6.6.236.6.23
linuxlinux_kernel>= 6.7 < 6.7.116.7.11
linuxlinux_kernel>= 6.8 < 6.8.26.8.2

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_ubuntu6.3MEDIUM
vendor_debian5.5LOW
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.