CVE Database
/

CVE-2024-26673

Back to search

CVE-2024-26673

Published: Apr 2, 2024

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations - Disallow families other than NFPROTO_{IPV4,IPV6,INET}. - Disallow layer 4 protocol with no ports, since destination port is a mandatory attribute for this object.

VendorProductVersions

Linux

Linux

affected
857b46027d6f91150797295752581b7155b9d0e1 - < f549f340c91f08b938d60266e792ff7748dae483
affected
857b46027d6f91150797295752581b7155b9d0e1 - < 65ee90efc928410c6f73b3d2e0afdd762652c09d
affected
857b46027d6f91150797295752581b7155b9d0e1 - < b775ced05489f4b77a35fe203e9aeb22f428e38f
affected
857b46027d6f91150797295752581b7155b9d0e1 - < 0f501dae16b7099e69ee9b0d5c70b8f40fd30e98
affected
857b46027d6f91150797295752581b7155b9d0e1 - < cfe3550ea5df292c9e2d608e8c4560032391847e

+2 more versions

Linux

Linux

affected
5.3
unaffected
0 - < 5.3
unaffected
5.4.269 - <= 5.4.*
unaffected
5.10.210 - <= 5.10.*
unaffected
5.15.149 - <= 5.15.*

+4 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now