CVE-2023-32233: Linux Kernel

High severity, CVSS 7.8. EPSS: 13% chance of exploitation in the next 30 days.

In the Linux kernel through 6.3.1, a use-after-free in Netfilter nf_tables when processing batch requests can be abused to perform arbitrary read and write operations on kernel memory. Unprivileged local users can obtain root privileges. This occurs because anonymous sets are mishandled.

Affected products

  • Linux Linux Kernel: from 3.13, before 4.14.315 (fixed in 4.14.315); from 4.15, before 4.19.283 (fixed in 4.19.283); from 4.20, before 5.4.243 (fixed in 5.4.243); from 5.5, before 5.10.180 (fixed in 5.10.180); from 5.11, before 5.15.111 (fixed in 5.15.111); from 5.16, before 6.1.28 (fixed in 6.1.28); …
  • Netapp Hci Baseboard Management Controller: version h300s only; version h410c only; version h410s only; version h500s only; version h700s only
  • Red Hat Enterprise Linux: version 7.0 only; version 8.0 only; version 9.0 only

Published 2023-05-08. Last modified 2026-06-17.