Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
1248 articles · 101974 vulns · 38/41 feeds (7d)
← Back to list
—
CVE-2026-23412PATCHED
linux · linux kernel

netfilter: bpf: defer hook memory release until rcu readers are done

Description

A vulnerability classified as critical has been found in Linux Kernel up to 6.6.129/6.12.77/6.18.19/6.19.9/7.0-rc4. This affects the function nfnetlink_hooks of the component netfilter. The manipulation leads to use after free. This vulnerability is uniquely identified as CVE-2026-23412. The attack can only be initiated within the local network. No exploit exists. It is recommended to upgrade the affected component.

Affected Products

VendorProductVersions
linuxlinux kernel84601d6ee68ae820dec97450934797046d62db4b, 84601d6ee68ae820dec97450934797046d62db4b, 84601d6ee68ae820dec97450934797046d62db4b, 84601d6ee68ae820dec97450934797046d62db4b, 84601d6ee68ae820dec97450934797046d62db4b, 6.4, 6.6.129, 6.12.77, 6.18.19, 6.19.9, 7.0-rc4

References

  • https://git.kernel.org/stable/c/d016c216bc75c45128160593a77b864a04dbe7c0
  • https://git.kernel.org/stable/c/cb2bf5efdb02a2a59faf603604a1066e8266f349
  • https://git.kernel.org/stable/c/c25e0dec366ae99b7264324ce3c7cbaea34691f9
  • https://git.kernel.org/stable/c/54244d54a971c26a0cd0a9073460ff71f3c51b32
  • https://git.kernel.org/stable/c/24f90fa3994b992d1a09003a3db2599330a5232a

Related News (2 articles)

Tier C
VulDB6h ago
CVE-2026-23412 | Linux Kernel up to 6.6.129/6.12.77/6.18.19/6.19.9/7.0-rc4 netfilter nfnetlink_hooks use after free
→ No new info (linked only)
Tier C
Linux Kernel CVEs7h ago
CVE-2026-23412: netfilter: bpf: defer hook memory release until rcu readers are done
→ No new info (linked only)
CISA KEV❌ No
Actively exploited❌ No
Patch available
d016c216bc75c45128160593a77b864a04dbe7c0cb2bf5efdb02a2a59faf603604a1066e8266f349c25e0dec366ae99b7264324ce3c7cbaea34691f954244d54a971c26a0cd0a9073460ff71f3c51b3224f90fa3994b992d1a09003a3db2599330a5232a06.6.1306.12.786.18.206.19.107.0-rc5
CWECWE-416
PublishedApr 2, 2026
Last enriched6h agov2
Trending Score41
Source articles2
Independent2
Info Completeness8/14
Missing: cvss, epss, kev, exploit, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALCVE-2026-23413EXP
clsact: Fix use-after-free in init/destroy rollback asymmetry
Trending: 49
CRITICALCVE-2026-23416EXP
mm/mseal: update VMA end correctly on merge
Trending: 49
CRITICALCVE-2026-23417EXP
bpf: Fix constant blinding for PROBE_MEM32 stores
Trending: 49
MEDIUMCVE-2026-22977
In the Linux kernel, the following vulnerability has been resolved: net: sock: fix hardened usercopy panic in sock_recv_errqueue skbuff_fclone_cache was created without defining a usercopy region, [
Trending: 31
CRITICALCVE-2026-23414
tls: Purge async_hold in tls_decrypt_async_wait()
Trending: 30

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Apr 2, 2026
Patch Available
Apr 2, 2026
Discovered by ZDM
Apr 2, 2026
Updated: description, affectedVersions, severity, cweIds
Apr 2, 2026

Version History

v2
Last enriched 6h ago
v2Tier C6h ago

Updated description with critical severity, new affected versions, and corrected exploit availability.

descriptionaffectedVersionsseveritycweIds
via VulDB
v16h ago

Initial creation