Linuxカーネルのnetfilter nf_tablesにおいて、commitミューテックスがnft_gc_seq_begin()とnft_gc_seq_end()の間のクリティカルセクション内で解放されると、非同期GCワーカーが同じGCシーケンス内で期限切れオブジェクトを回収し、ロックを取得する可能性がありました。この問題が悪用されると、nf_tablesのトランザクション中にリソースの不整合や予期しない動作が発生するおそれがあります。修正では、nf_tables_module_autoload()のアボート処理においてミューテックスを解放するタイミングをnft_gc_seq_end()の呼び出し後に移動することで、適切に対策しています。
Debian Debian GNU/Linux 10.0 Linux Linux Kernel 4.19.316 から 4.20 未満 Linux Kernel 5.10.198 から 5.10.215 未満 Linux Kernel 5.15.134 から 5.15.155 未満 Linux Kernel 5.4.262 から 5.4.274 未満 Linux Kernel 6.1.56 から 6.1.86 未満 Linux Kernel 6.4.13 から 6.5 未満 Linux Kernel 6.5.1 から 6.6.26 未満 Linux Kernel 6.7 から 6.8.5 未満 Linux Kernel 6.5 Linux Kernel 6.9
本脆弱性の影響を受ける製品の詳細については、ベンダ情報および参考情報をご確認ください。
当該ソフトウェアが扱う情報について、外部への漏えいは発生しません。 また、当該ソフトウェアが扱う情報について、書き換えは発生しません。 さらに、当該ソフトウェアが完全に停止する可能性があります。 そして、この脆弱性を悪用した攻撃の影響は、他のソフトウェアには及びません。
正式な対策が公開されています。ベンダ情報を参照して適切な対策を実施してください。
Debian Debian Mailing Lists : [SECURITY] [DLA 3842-1] linux-5.10 security update
不適切なロック(CWE-667) [NVD評価]
CVE-2024-26925
National Vulnerability Database (NVD) : CVE-2024-26925 関連文書 : netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path - kernel/git/stable/linux.git - Linux kernel stable tree (https://git.kernel.org/stable/c/2cee2ff7f8cce12a63a0a23ffe27f08d99541494) 関連文書 : netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path - kernel/git/stable/linux.git - Linux kernel stable tree (https://git.kernel.org/stable/c/8d3a58af50e46167b6f1db47adadad03c0045dae) 関連文書 : netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path - kernel/git/stable/linux.git - Linux kernel stable tree (https://git.kernel.org/stable/c/61ac7284346c32f9a8c8ceac56102f7914060428) 関連文書 : netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path - kernel/git/stable/linux.git - Linux kernel stable tree (https://git.kernel.org/stable/c/8038ee3c3e5b59bcd78467686db5270c68544e30) 関連文書 : netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path - kernel/git/stable/linux.git - Linux kernel stable tree (https://git.kernel.org/stable/c/0d459e2ffb541841714839e8228b845458ed3b27) 関連文書 : netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path - kernel/git/stable/linux.git - Linux kernel stable tree (https://git.kernel.org/stable/c/a34ba4bdeec0c3b629160497594908dc820110f1) 関連文書 : netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path - kernel/git/stable/linux.git - Linux kernel stable tree (https://git.kernel.org/stable/c/eb769ff4e281f751adcaf4f4445cbf30817be139)
[2025年12月25日] 掲載