CVE-2023-4015: Debian Linux
High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.
A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. On an error when building a nftables rule, deactivating immediate expressions in nft_immediate_deactivate() can lead unbinding the chain and objects be deactivated but later used. We recommend upgrading past commit 0a771f7b266b02d262900c75f1e175c7fe76fec2.
Affected products
- Debian Debian Linux: version 12.0 only
- Linux Linux Kernel: from 5.9, before 5.10.190 (fixed in 5.10.190); from 5.11, before 5.15.124 (fixed in 5.15.124); from 5.16, before 6.1.43 (fixed in 6.1.43); from 6.2, before 6.4.8 (fixed in 6.4.8)
Published 2023-09-06. Last modified 2026-06-17.