Use-after-free vulnerability in the nfqnl_zcopy function in net/netfilter/nfnetlink_queue_core.c in the Linux kernel through 3.13.6 allows attackers to obtain sensitive information from kernel memory by leveraging the absence of a certain orphaning operation. NOTE: the affected code was moved to the skb_zerocopy function in net/core/skbuff.c before the vulnerability was announced.
References
Configurations
History
No history.
Information
Published : 2014-03-24 16:40
Updated : 2025-04-12 10:46
NVD link : CVE-2014-2568
Mitre link : CVE-2014-2568
CVE.ORG link : CVE-2014-2568
JSON object : View
Products Affected
linux
- linux_kernel
canonical
- ubuntu_linux
CWE
CWE-416
Use After Free