CVE-2025-22064

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: don't unregister hook when table is dormant When nf_tables_updchain encounters an error, hook registration needs to be rolled back. This should only be done if the hook has been registered, which won't happen when the table is flagged as dormant (inactive). Just move the assignment into the registration block.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

31 Oct 2025, 20:43

Type Values Removed Values Added
Summary
  • (es) En el kernel de Linux, se ha resuelto la siguiente vulnerabilidad: netfilter: nf_tables: no anular el registro del gancho cuando la tabla está inactiva. Cuando nf_tables_updchain detecta un error, es necesario revertir el registro del gancho. Esto solo debe hacerse si el gancho ya está registrado, lo cual no ocurrirá si la tabla está inactiva. Simplemente mueva la asignación al bloque de registro.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
First Time Linux linux Kernel
Linux
References () https://git.kernel.org/stable/c/03d1fb457b696c18fe15661440c4f052b2374e7e - () https://git.kernel.org/stable/c/03d1fb457b696c18fe15661440c4f052b2374e7e - Patch
References () https://git.kernel.org/stable/c/6134d1ea1e1408e8e7c8c26545b3b301cbdf1eda - () https://git.kernel.org/stable/c/6134d1ea1e1408e8e7c8c26545b3b301cbdf1eda - Patch
References () https://git.kernel.org/stable/c/688c15017d5cd5aac882400782e7213d40dc3556 - () https://git.kernel.org/stable/c/688c15017d5cd5aac882400782e7213d40dc3556 - Patch
References () https://git.kernel.org/stable/c/ce571eba07d54e3637bf334bc48376fbfa55defe - () https://git.kernel.org/stable/c/ce571eba07d54e3637bf334bc48376fbfa55defe - Patch
References () https://git.kernel.org/stable/c/feb1fa2a03a27fec7001e93e4223be4120d1784b - () https://git.kernel.org/stable/c/feb1fa2a03a27fec7001e93e4223be4120d1784b - Patch
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo

16 Apr 2025, 15:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-16 15:16

Updated : 2025-10-31 20:43


NVD link : CVE-2025-22064

Mitre link : CVE-2025-22064

CVE.ORG link : CVE-2025-22064


JSON object : View

Products Affected

linux

  • linux_kernel