Back

HIGH

kernel: Netfilter integer overflow vulnerability in nft_payload_copy_vlan

Published Mar 27, 2023

Description

A buffer overflow vulnerability was found in the Netfilter subsystem in the Linux Kernel. This issue could allow the leakage of both stack and heap addresses, and potentially allow Local Privilege Escalation to the root user via arbitrary code execution.

Affected products

Remediation

Red Hat mitigation

This flaw can be mitigated by disabling unprivileged user namespaces will prevent exploitation: ~~~ sysctl -w kernel.unprivileged_userns_clone = 0 ~~~

References (8)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Mar 27, 2023
Updated Feb 19, 2025
Reserved Jan 11, 2023
CISA Vulnrichment
Updated Feb 19, 2025
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Important
Public date Jan 13, 2023
ENISA EUVD
Assigner redhat
Published Mar 27, 2023
Updated Feb 19, 2025
Exploited since n/a
EUVD-2023-12268