kernel CVE-2023-32233
Package
kernel-5.10
(bottlerocket)
Affected versions
< 1.14.1
Patched versions
1.14.1
kernel-5.15
(bottlerocket)
< 1.14.1
1.14.1
In the Linux kernel through 6.3.1, a use-after-free in Netfilter
nf_tables
when processing batch requests can be abused to perform arbitrary read and write operations on kernel memory. This could result in a local user (withCAP_NET_ADMIN
capability) crashing the system or a potential escalation of privileges.