kernel CVE-2023-6817
Package
kernel-5.10
(bottlerocket)
Affected versions
< 1.18.0
Patched versions
1.18.0
kernel-5.15
(bottlerocket)
< 1.18.0
1.18.0
In the Linux kernel's netfilter nf_tables component, the function nft_pipapo_walk did not skip inactive elements during the set walk which could lead to a use-after-free due to double deactivation of elements.