CVE-2023-0881: Canonical Linux-Bluefield

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Running DDoS on tcp port 22 will trigger a kernel crash. This issue is introduced by the backport of a commit regarding nft_lookup without the subsequent fixes that were introduced after this commit. The resolution of this CVE introduces those commits to the linux-bluefield package.

Affected products

  • Canonical Linux-Bluefield: before 5.4.0-1058.64 (fixed in 5.4.0-1058.64)

Published 2025-03-31. Last modified 2026-06-17.