CVE-2022-48642: Linux Kernel

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix percpu memory leak at nf_tables_addchain() It seems to me that percpu memory for chain stats started leaking since commit 3bc158f8d0330f0a ("netfilter: nf_tables: map basechain priority to hardware priority") when nft_chain_offload_priority() returned an error.

Affected products

  • Linux Linux Kernel: from 5.3, before 5.10.146 (fixed in 5.10.146); from 5.11, before 5.15.71 (fixed in 5.15.71); from 5.16, before 5.19.12 (fixed in 5.19.12); version 6.0 only

Published 2024-04-28. Last modified 2026-06-17.