CVE-2023-6622 describes a null pointer dereference vulnerability in the Linux kernel's nf_tables component, specifically within the nft_dynset_init() function, affecting various Fedora and Red Hat Enterprise Linux distributions. This medium-severity flaw (CVSS 5.5) allows a local attacker with CAP_NET_ADMIN privileges to trigger a denial of service. Currently, there is no public exploit code available, nor is there evidence of active exploitation or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
38CPE matchmatch criteria | cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:* | ||
39CPE matchmatch criteria | cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:* | ||
>= 5.11, <= 6.6CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | ||
6.7CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:6.7:rc1:*:*:*:*:*:* | ||
6.7CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:6.7:rc2:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.