Arthur Mongodin
0day
In our previous article Yet another bug into Netfilter, I presented a vulnerability found within the netfilter subsystem of the Linux kernel. During my investigation, I found a weird comparison that does not fully protect a copy within a buffer. It led to a heap buffer overflow that was exploited to obtain root privileges on Ubuntu 22.04.
A small jump in the past In the last episode, we reached an out-of-bound within the nft_set structure (/include/net/netfilter/nf_tables.