nf_tables_newset in net/netfilter/nf_tables_api.c in the...
Moderate severity
Unreviewed
Published
Jan 12, 2022
to the GitHub Advisory Database
•
Updated Feb 3, 2023
Description
Published by the National Vulnerability Database
Jan 11, 2022
Published to the GitHub Advisory Database
Jan 12, 2022
Last updated
Feb 3, 2023
nf_tables_newset in net/netfilter/nf_tables_api.c in the Linux kernel before 5.12.13 allows local users to cause a denial of service (NULL pointer dereference and general protection fault) because of the missing initialization for nft_set_elem_expr_alloc. A local user can set a netfilter table expression in their own namespace.
References