CVE Database
/

CVE-2026-25702

Back to search

CVE-2026-25702

Published: Mar 5, 2026

Modified: Mar 5, 2026

PUBLISHED

CVSS v3.1

7.3

HIGH

Description

A Improper Access Control vulnerability in the kernel of SUSE SUSE Linux Enterprise Server 12 SP5 breaks nftables, causing firewall rules applied via nftables to not be effective.This issue affects SUSE Linux Enterprise Server: from 9e6d9d4601768c75fdb0bad3fbbe636e748939c2 before 9c294edb7085fb91650bc12233495a8974c5ff2d.

VendorProductVersions

SUSE

SUSE Linux Enterprise Server

affected
9e6d9d4601768c75fdb0bad3fbbe636e748939c2 - < 9c294edb7085fb91650bc12233495a8974c5ff2d

Weaknesses (CWE)

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

Attack Vector

Network

Attack Complexity

Low

Privileges Required

None

User Interaction

None

Scope

Unchanged

Confidentiality

Low

Integrity

Low

Availability

Low

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now