High severity7.8NVD Advisory· Published Sep 6, 2023· Updated Jun 17, 2026
CVE-2023-4015
CVE-2023-4015
Description
A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation.
On an error when building a nftables rule, deactivating immediate expressions in nft_immediate_deactivate() can lead unbinding the chain and objects be deactivated but later used.
We recommend upgrading past commit 0a771f7b266b02d262900c75f1e175c7fe76fec2.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4Patches
Vulnerability mechanics
References
3- git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/nvdIssue TrackingMailing ListPatchVendor Advisory
- kernel.dance/0a771f7b266b02d262900c75f1e175c7fe76fec2nvdPatchVendor Advisory
- www.debian.org/security/2023/dsa-5492nvdThird Party Advisory
News mentions
0No linked articles in our index yet.