logo

CVE-2026-23111: Linux nf_tables Flaw Enables Root Exploits

ID: 0789c6b7-21ea-573e-a7dc-0d317b69026e

STIX ID: report--0789c6b7-21ea-573e-a7dc-0d317b69026e

Feed Name: Security Affairs

Threat Score
72/100

Date Published: 2026-06-09

Date Updated: 2026-06-09

Author: Pierluigi Paganini

...
...

CVE-2026-23111 is a Linux nf_tables use-after-free that allows a local unprivileged user (with user namespaces enabled) to achieve root via a sequence that drains and frees chain objects; the flaw was fixed by removing a single negation in the abort path, but public exploits and technical walkthroughs were published after the patch, affecting many common distributions—users are advised to update kernels and restrict unprivileged user namespaces until patched.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.