VYPR
Medium severity5.5NVD Advisory· Published Jun 25, 2026· Updated Jul 8, 2026

CVE-2026-53269

CVE-2026-53269

Description

In the Linux kernel, the following vulnerability has been resolved:

netfilter: synproxy: add mutex to guard hook reference counting

As the synproxy infrastructure register netfilter hooks on-demand when a user adds the first iptables target or nftables expression, if done concurrently they can race each other.

Introduce a mutex to serialize the refcount control blocks access from both frontends. While a per namespace mutex might be more efficient, it is not needed for target/expression like SYNPROXY.

Affected products

15

Patches

Vulnerability mechanics

References

8

News mentions

0

No linked articles in our index yet.