CVE-2024-26581: Debian Linux

High severity, CVSS 7.8. EPSS: 2.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_rbtree: skip end interval element from gc rbtree lazy gc on insert might collect an end interval element that has been just added in this transactions, skip end interval elements that are not yet active.

Affected products

  • Debian Debian Linux: version 10.0 only
  • Linux Linux Kernel: from 5.4.262, before 5.4.269 (fixed in 5.4.269); from 5.10.190, before 5.10.210 (fixed in 5.10.210); from 5.15.124, before 5.15.149 (fixed in 5.15.149); from 6.1.43, before 6.1.78 (fixed in 6.1.78); from 6.4.8, before 6.6.17 (fixed in 6.6.17); from 6.7, before 6.7.5 (fixed in 6.7.5)

Published 2024-02-20. Last modified 2026-06-17.