Vulnerability Details CVE-2024-0193
A use-after-free flaw was found in the netfilter subsystem of the Linux kernel. If the catchall element is garbage-collected when the pipapo set is removed, the element can be deactivated twice. This can cause a use-after-free issue on an NFT_CHAIN object or NFT_OBJECT object, allowing a local unprivileged user with CAP_NET_ADMIN capability to escalate their privileges on the system.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 34.0%
CVSS Severity
CVSS v3 Score 7.8
Products affected by CVE-2024-0193
-
cpe:2.3:a:redhat:codeready_linux_builder:9.0
-
cpe:2.3:a:redhat:codeready_linux_builder_for_eus:9.2
-
cpe:2.3:a:redhat:codeready_linux_builder_for_eus:9.4
-
cpe:2.3:a:redhat:codeready_linux_builder_for_eus:9.6
-
cpe:2.3:a:redhat:codeready_linux_builder_for_ibm_z_systems:9.0_s390x
-
cpe:2.3:a:redhat:codeready_linux_builder_for_ibm_z_systems_eus:9.2_s390x
-
cpe:2.3:a:redhat:codeready_linux_builder_for_ibm_z_systems_eus:9.4_s390x
-
cpe:2.3:a:redhat:codeready_linux_builder_for_ibm_z_systems_eus:9.6_s390x
-
cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian:9.0_ppc64le
-
cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian_eus:9.2
-
cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian_eus:9.4_ppc64le
-
cpe:2.3:a:redhat:codeready_linux_builder_for_power_little_endian_eus:9.6_ppc64le
-
cpe:2.3:a:redhat:openshift_logging:5.1
-
cpe:2.3:a:redhat:openshift_logging:5.2
-
cpe:2.3:a:redhat:openshift_logging:5.2.1
-
cpe:2.3:a:redhat:openshift_logging:5.2.10
-
cpe:2.3:a:redhat:openshift_logging:5.2.11
-
cpe:2.3:a:redhat:openshift_logging:5.2.12
-
cpe:2.3:a:redhat:openshift_logging:5.2.13
-
cpe:2.3:a:redhat:openshift_logging:5.2.2
-
cpe:2.3:a:redhat:openshift_logging:5.2.3
-
cpe:2.3:a:redhat:openshift_logging:5.2.4
-
cpe:2.3:a:redhat:openshift_logging:5.2.5
-
cpe:2.3:a:redhat:openshift_logging:5.2.6
-
cpe:2.3:a:redhat:openshift_logging:5.2.7
-
cpe:2.3:a:redhat:openshift_logging:5.2.8
-
cpe:2.3:a:redhat:openshift_logging:5.2.9
-
cpe:2.3:a:redhat:openshift_logging:5.3
-
cpe:2.3:a:redhat:openshift_logging:5.3.1
-
cpe:2.3:a:redhat:openshift_logging:5.3.10
-
cpe:2.3:a:redhat:openshift_logging:5.3.11
-
cpe:2.3:a:redhat:openshift_logging:5.3.12
-
cpe:2.3:a:redhat:openshift_logging:5.3.13
-
cpe:2.3:a:redhat:openshift_logging:5.3.14
-
cpe:2.3:a:redhat:openshift_logging:5.3.2
-
cpe:2.3:a:redhat:openshift_logging:5.3.3
-
cpe:2.3:a:redhat:openshift_logging:5.3.4
-
cpe:2.3:a:redhat:openshift_logging:5.3.5
-
cpe:2.3:a:redhat:openshift_logging:5.3.6
-
cpe:2.3:a:redhat:openshift_logging:5.3.7
-
cpe:2.3:a:redhat:openshift_logging:5.3.8
-
cpe:2.3:a:redhat:openshift_logging:5.3.9
-
cpe:2.3:a:redhat:openshift_logging:5.4
-
cpe:2.3:a:redhat:openshift_logging:5.4.1
-
cpe:2.3:a:redhat:openshift_logging:5.4.10
-
cpe:2.3:a:redhat:openshift_logging:5.4.11
-
cpe:2.3:a:redhat:openshift_logging:5.4.2
-
cpe:2.3:a:redhat:openshift_logging:5.4.3
-
cpe:2.3:a:redhat:openshift_logging:5.4.4
-
cpe:2.3:a:redhat:openshift_logging:5.4.5
-
cpe:2.3:a:redhat:openshift_logging:5.4.6
-
cpe:2.3:a:redhat:openshift_logging:5.4.8
-
cpe:2.3:a:redhat:openshift_logging:5.4.9
-
cpe:2.3:a:redhat:openshift_logging:5.5
-
cpe:2.3:a:redhat:openshift_logging:5.5.1
-
cpe:2.3:a:redhat:openshift_logging:5.5.2
-
cpe:2.3:a:redhat:openshift_logging:5.5.3
-
cpe:2.3:a:redhat:openshift_logging:5.5.4
-
cpe:2.3:a:redhat:openshift_logging:5.5.5
-
cpe:2.3:a:redhat:openshift_logging:5.5.6
-
cpe:2.3:a:redhat:openshift_logging:5.5.7
-
cpe:2.3:a:redhat:openshift_logging:5.5.8
-
cpe:2.3:a:redhat:openshift_logging:5.5.9
-
cpe:2.3:a:redhat:openshift_logging:5.6
-
cpe:2.3:a:redhat:openshift_logging:5.6.1
-
cpe:2.3:a:redhat:openshift_logging:5.6.2
-
cpe:2.3:a:redhat:openshift_logging:5.6.3
-
cpe:2.3:a:redhat:openshift_logging:5.6.4
-
cpe:2.3:a:redhat:openshift_logging:5.6.5
-
cpe:2.3:a:redhat:openshift_logging:5.7.0
-
cpe:2.3:a:redhat:openshift_logging:5.7.1
-
cpe:2.3:a:redhat:openshift_logging:5.7.2
-
cpe:2.3:a:redhat:openshift_logging:5.7.3
-
cpe:2.3:a:redhat:openshift_logging:5.7.4
-
cpe:2.3:o:linux:linux_kernel:5.10.198
-
cpe:2.3:o:linux:linux_kernel:5.10.199
-
cpe:2.3:o:linux:linux_kernel:5.10.200
-
cpe:2.3:o:linux:linux_kernel:5.10.201
-
cpe:2.3:o:linux:linux_kernel:5.10.202
-
cpe:2.3:o:linux:linux_kernel:5.10.203
-
cpe:2.3:o:linux:linux_kernel:5.10.204
-
cpe:2.3:o:linux:linux_kernel:5.10.205
-
cpe:2.3:o:linux:linux_kernel:5.15.118
-
cpe:2.3:o:linux:linux_kernel:5.15.119
-
cpe:2.3:o:linux:linux_kernel:5.15.120
-
cpe:2.3:o:linux:linux_kernel:5.15.121
-
cpe:2.3:o:linux:linux_kernel:5.15.122
-
cpe:2.3:o:linux:linux_kernel:5.15.123
-
cpe:2.3:o:linux:linux_kernel:5.15.124
-
cpe:2.3:o:linux:linux_kernel:5.15.125
-
cpe:2.3:o:linux:linux_kernel:5.15.126
-
cpe:2.3:o:linux:linux_kernel:5.15.127
-
cpe:2.3:o:linux:linux_kernel:5.15.128
-
cpe:2.3:o:linux:linux_kernel:5.15.129
-
cpe:2.3:o:linux:linux_kernel:5.15.130
-
cpe:2.3:o:linux:linux_kernel:5.15.131
-
cpe:2.3:o:linux:linux_kernel:5.15.132
-
cpe:2.3:o:linux:linux_kernel:5.15.133
-
cpe:2.3:o:linux:linux_kernel:5.15.134
-
cpe:2.3:o:linux:linux_kernel:5.15.135
-
cpe:2.3:o:linux:linux_kernel:5.15.136
-
cpe:2.3:o:linux:linux_kernel:5.15.137
-
cpe:2.3:o:linux:linux_kernel:5.15.138
-
cpe:2.3:o:linux:linux_kernel:5.15.139
-
cpe:2.3:o:linux:linux_kernel:5.15.140
-
cpe:2.3:o:linux:linux_kernel:5.15.141
-
cpe:2.3:o:linux:linux_kernel:5.15.142
-
cpe:2.3:o:linux:linux_kernel:5.15.143
-
cpe:2.3:o:linux:linux_kernel:5.15.144
-
cpe:2.3:o:linux:linux_kernel:5.15.145
-
cpe:2.3:o:linux:linux_kernel:6.1.35
-
cpe:2.3:o:linux:linux_kernel:6.1.36
-
cpe:2.3:o:linux:linux_kernel:6.1.37
-
cpe:2.3:o:linux:linux_kernel:6.1.38
-
cpe:2.3:o:linux:linux_kernel:6.1.39
-
cpe:2.3:o:linux:linux_kernel:6.1.40
-
cpe:2.3:o:linux:linux_kernel:6.1.41
-
cpe:2.3:o:linux:linux_kernel:6.1.42
-
cpe:2.3:o:linux:linux_kernel:6.1.43
-
cpe:2.3:o:linux:linux_kernel:6.1.44
-
cpe:2.3:o:linux:linux_kernel:6.1.45
-
cpe:2.3:o:linux:linux_kernel:6.1.46
-
cpe:2.3:o:linux:linux_kernel:6.1.47
-
cpe:2.3:o:linux:linux_kernel:6.1.48
-
cpe:2.3:o:linux:linux_kernel:6.1.49
-
cpe:2.3:o:linux:linux_kernel:6.1.50
-
cpe:2.3:o:linux:linux_kernel:6.1.51
-
cpe:2.3:o:linux:linux_kernel:6.1.52
-
cpe:2.3:o:linux:linux_kernel:6.1.53
-
cpe:2.3:o:linux:linux_kernel:6.1.54
-
cpe:2.3:o:linux:linux_kernel:6.1.55
-
cpe:2.3:o:linux:linux_kernel:6.1.56
-
cpe:2.3:o:linux:linux_kernel:6.1.57
-
cpe:2.3:o:linux:linux_kernel:6.1.58
-
cpe:2.3:o:linux:linux_kernel:6.1.59
-
cpe:2.3:o:linux:linux_kernel:6.1.60
-
cpe:2.3:o:linux:linux_kernel:6.1.61
-
cpe:2.3:o:linux:linux_kernel:6.1.62
-
cpe:2.3:o:linux:linux_kernel:6.1.63
-
cpe:2.3:o:linux:linux_kernel:6.1.64
-
cpe:2.3:o:linux:linux_kernel:6.1.65
-
cpe:2.3:o:linux:linux_kernel:6.1.66
-
cpe:2.3:o:linux:linux_kernel:6.1.67
-
cpe:2.3:o:linux:linux_kernel:6.1.68
-
cpe:2.3:o:linux:linux_kernel:6.1.69
-
cpe:2.3:o:linux:linux_kernel:6.1.70
-
cpe:2.3:o:linux:linux_kernel:6.3.10
-
cpe:2.3:o:linux:linux_kernel:6.3.11
-
cpe:2.3:o:linux:linux_kernel:6.3.12
-
cpe:2.3:o:linux:linux_kernel:6.3.13
-
cpe:2.3:o:linux:linux_kernel:6.3.9
-
cpe:2.3:o:linux:linux_kernel:6.4
-
cpe:2.3:o:linux:linux_kernel:6.4.1
-
cpe:2.3:o:linux:linux_kernel:6.4.10
-
cpe:2.3:o:linux:linux_kernel:6.4.11
-
cpe:2.3:o:linux:linux_kernel:6.4.12
-
cpe:2.3:o:linux:linux_kernel:6.4.13
-
cpe:2.3:o:linux:linux_kernel:6.4.14
-
cpe:2.3:o:linux:linux_kernel:6.4.15
-
cpe:2.3:o:linux:linux_kernel:6.4.16
-
cpe:2.3:o:linux:linux_kernel:6.4.2
-
cpe:2.3:o:linux:linux_kernel:6.4.3
-
cpe:2.3:o:linux:linux_kernel:6.4.4
-
cpe:2.3:o:linux:linux_kernel:6.4.5
-
cpe:2.3:o:linux:linux_kernel:6.4.6
-
cpe:2.3:o:linux:linux_kernel:6.4.7
-
cpe:2.3:o:linux:linux_kernel:6.4.8
-
cpe:2.3:o:linux:linux_kernel:6.4.9
-
cpe:2.3:o:linux:linux_kernel:6.5
-
cpe:2.3:o:linux:linux_kernel:6.5.1
-
cpe:2.3:o:linux:linux_kernel:6.5.10
-
cpe:2.3:o:linux:linux_kernel:6.5.11
-
cpe:2.3:o:linux:linux_kernel:6.5.12
-
cpe:2.3:o:linux:linux_kernel:6.5.13
-
cpe:2.3:o:linux:linux_kernel:6.5.2
-
cpe:2.3:o:linux:linux_kernel:6.5.3
-
cpe:2.3:o:linux:linux_kernel:6.5.4
-
cpe:2.3:o:linux:linux_kernel:6.5.5
-
cpe:2.3:o:linux:linux_kernel:6.5.6
-
cpe:2.3:o:linux:linux_kernel:6.5.7
-
cpe:2.3:o:linux:linux_kernel:6.5.8
-
cpe:2.3:o:linux:linux_kernel:6.5.9
-
cpe:2.3:o:linux:linux_kernel:6.6
-
cpe:2.3:o:linux:linux_kernel:6.6.1
-
cpe:2.3:o:linux:linux_kernel:6.6.2
-
cpe:2.3:o:linux:linux_kernel:6.6.3
-
cpe:2.3:o:linux:linux_kernel:6.6.4
-
cpe:2.3:o:linux:linux_kernel:6.6.5
-
cpe:2.3:o:linux:linux_kernel:6.6.6
-
cpe:2.3:o:linux:linux_kernel:6.6.7
-
cpe:2.3:o:linux:linux_kernel:6.6.8
-
cpe:2.3:o:linux:linux_kernel:6.6.9
-
cpe:2.3:o:redhat:enterprise_linux:9.0
-
cpe:2.3:o:redhat:enterprise_linux:9.2
-
cpe:2.3:o:redhat:enterprise_linux_for_arm_64:9.0_aarch64
-
cpe:2.3:o:redhat:enterprise_linux_for_arm_64:9.4_aarch64
-
cpe:2.3:o:redhat:enterprise_linux_for_arm_64:9.6_aarch64
-
cpe:2.3:o:redhat:enterprise_linux_for_arm_64_els:9.4_aarch64
-
cpe:2.3:o:redhat:enterprise_linux_for_arm_64_els:9.6_aarch64
-
cpe:2.3:o:redhat:enterprise_linux_for_arm_64_eus:9.4_aarch64
-
cpe:2.3:o:redhat:enterprise_linux_for_arm_64_eus:9.6_aarch64
-
cpe:2.3:o:redhat:enterprise_linux_for_els:9.2
-
cpe:2.3:o:redhat:enterprise_linux_for_els:9.4
-
cpe:2.3:o:redhat:enterprise_linux_for_els:9.6
-
cpe:2.3:o:redhat:enterprise_linux_for_eus:9.2
-
cpe:2.3:o:redhat:enterprise_linux_for_eus:9.4
-
cpe:2.3:o:redhat:enterprise_linux_for_eus:9.6
-
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:9.0
-
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:9.0_s390x
-
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:9.2_s390x
-
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:9.4_s390x
-
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems:9.6_s390x
-
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_els:9.2
-
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_els:9.4_s390x
-
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_els:9.6_s390x
-
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:9.2
-
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:9.4_s390x
-
cpe:2.3:o:redhat:enterprise_linux_for_ibm_z_systems_eus:9.6_s390x
-
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian:9.0
-
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_els:9.2
-
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_els:9.4_ppc64le
-
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_els:9.6_ppc64le
-
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:9.0_ppc64le
-
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:9.2
-
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:9.4_ppc64le
-
cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian_eus:9.6_ppc64le
-
cpe:2.3:o:redhat:enterprise_linux_for_update_services_for_sap_solutions:9.0
-
cpe:2.3:o:redhat:enterprise_linux_for_update_services_for_sap_solutions:9.2
-
cpe:2.3:o:redhat:enterprise_linux_for_update_services_for_sap_solutions:9.4
-
cpe:2.3:o:redhat:enterprise_linux_for_update_services_for_sap_solutions:9.6
-
cpe:2.3:o:redhat:enterprise_linux_server_aus:9.2
-
cpe:2.3:o:redhat:enterprise_linux_server_aus:9.4
-
cpe:2.3:o:redhat:enterprise_linux_server_aus:9.6
-
cpe:2.3:o:redhat:enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions:9.0_ppc64le
-
cpe:2.3:o:redhat:enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions:9.2
-
cpe:2.3:o:redhat:enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions:9.4_ppc64le
-
cpe:2.3:o:redhat:enterprise_linux_server_for_power_little_endian_update_services_for_sap_solutions:9.6_ppc64le