THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-23385 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: clone set on flush only Syzbot with fault injection triggered a failing memory allocation with GFP_KERNEL which results in a WARN splat: iter.err WARNING: net/netfilter/nf_tables_api.c:84

[NVD] CVE-2026-23385 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: clone set on flush only Syzbot with fault injection triggered a failing memory allocation with GFP_KERNEL which results in a WARN splat: iter.err WARNING: net/netfilter/nf_tables_api.c:84

lownvdPublished 2026-03-25

CVE-2026-23385 CVSS: 5.5 MEDIUM Published: 2026-03-25T11:16:38.773

In the Linux kernel, the following vulnerability has been resolved:

netfilter: nf_tables: clone set on flush only

Syzbot with fault injection triggered a failing memory allocation with GFP_KERNEL which results in a WARN splat:

iter.err WARNING: net/netfilter/nf_tables_api.c:845 at nft_map_deactivate+0x34e/0x3c0 net/netfilter/nf

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-23385