GHSA-7p55-3fjg-254hHighCVSS 7.1

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: move...

Published
September 17, 2026
Last Modified
September 18, 2026

🔗 CVE IDs covered (1)

📋 Description

In the Linux kernel, the following vulnerability has been resolved:

netfilter: nf_tables: move hardware offload step after building the chain blob

Allocate the chain blob before the ruleset offload to reduce chances of entering an inconsistent state where the offloaded ruleset in the nic and the software ruleset differ.

🔗 References (10)