CVE-2023-4147
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Aug 7, 2023
Updated: Nov 21, 2023
CWE ID 416
Summary
CVE-2023-4147 is a newly discovered vulnerability in the Linux kernel's Netfilter functionality. This issue involves a use-after-free flaw, which can be exploited when a local user adds a rule with NFTA_RULE_CHAIN_ID. The consequence of this vulnerability is either a system crash or potential privilege escalation, posing a significant security risk for Linux users. This flaw requires local access and can be mitigated by applying the latest Linux kernel patch.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share