Vulnerabilities in Netfilter and io_uring allow for privilege escalation in the system
Vulnerabilities have been identified in the Linux kernel subsystems Netfilter and io_uring that allow a local user to escalate privileges in the system: A vulnerability (CVE-2023-32233) in the Netfilter subsystem, caused by accessing memory after it has been freed (use-after-free) in the nf_tables module, which supports the nftables packet filtering. The vulnerability can be exploited by sending specially crafted requests to update the nftables configuration. For the attack to take place […]
