CVE-2023-4147: Fixes in Linux Kernel
A flaw in the Linux Kernel found. For the netfilter, nf_tables_newrule when adding a rule with NFTA_RULE_CHAIN_ID can lead to use-after-free. Reference: https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=0ebc1064e4874d5987722a2ddbc18f94aa53b211
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is CVE-2023-4147?
CVE-2023-4147 is a use-after-free flaw found in the Linux kernel's Netfilter functionality when adding a rule with NFTA_RULE_CHAIN_ID.
How does CVE-2023-4147 impact the system?
CVE-2023-4147 allows a local user to crash or escalate their privileges on the system.
What is the severity of CVE-2023-4147?
CVE-2023-4147 has a severity rating of 7.8 (High).
Which software are affected by CVE-2023-4147?
Linux kernel versions 6.5 and earlier, Fedora 38, and Redhat Enterprise Linux 9.0 are affected by CVE-2023-4147.
How do I fix CVE-2023-4147?
Apply the recommended patches and updates provided by the respective vendors to mitigate CVE-2023-4147.