Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2024-26643

18
FAUCET Score

CVE-2024-26643 is a medium-severity vulnerability in the Linux kernel's netfilter nf_tables component, specifically affecting Debian and other Linux distributions. It involves a race condition where the garbage collector can prematurely remove elements from anonymous sets with timeouts during their release, potentially leading to a denial-of-service (DoS) condition. The attack requires local access and low privileges, with a low attack complexity. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.

Impacted Technologies

VendorProductVersion(s)CPE
< 5.4.274CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.5, < 5.10.215CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.11, < 5.15.154CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.16, < 6.1.84CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 6.2, < 6.6.24CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.19%
Probability of exploitation in next 30 days
EPSS Percentile
9.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0019 is in the 47th percentile among its peer group of 15,940 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (6)

redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-rt-0:4.18.0-553.5.1.rt7.346.el8_10
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: kernel-0:4.18.0-553.5.1.el8_10
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-0:5.14.0-427.18.1.el9_4
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.2 Extended Update SupportFixed in: kernel-0:5.14.0-284.67.1.el9_2
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.2 Extended Update SupportFixed in: kernel-rt-0:5.14.0-284.67.1.rt14.352.el9_2
View patch
redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: kernel-rt

Vendor Advisories (1)

redhatCVE-2024-26643Moderate

kernel: netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeout

Mar 21, 2024

References

cert-portal.siemens.com / productcert/html/ssa-265688.html
git.kernel.org / stable/c/291cca35818bd52a407bc37ab45a15816039e363
Patch
git.kernel.org / stable/c/406b0241d0eb598a0b330ab20ae325537d8d8163
Patch
git.kernel.org / stable/c/5224afbc30c3ca9ba23e752f0f138729b2c48dd8
Patch
git.kernel.org / stable/c/552705a3650bbf46a22b1adedc1b04181490fc36
Patch
git.kernel.org / stable/c/b2d6f9a5b1cf968f1eaa71085ceeb09c2cb276b1
Patch
git.kernel.org / stable/c/d75a589bb92af1abf3b779cfcd1977ca11b27033
Patch
git.kernel.org / stable/c/e2d45f467096e931044f0ab7634499879d851a5c
Patch
git.kernel.org / stable/c/edcf1a3f182ecf8b6b805f0ce90570ea98c5f6bf
Patch
lists.debian.org / debian-lts-announce/2024/06/msg00017.html
Mailing List