CVE-2023-53635

netfilter: conntrack: fix wrong ct->timeout value

References

Notes

 carnil> Introduced in tag for -stable kernel to pick up this fix.
 carnil> a4b4766c3ceb ("netfilter: nfnetlink_queue: rename related to nfqueue attaching
 carnil> conntrack info"). Vulnerable versions: 4.4.

Bugs

Status

Branch Status
upstream released (6.4-rc1) [73db1b8f2bb6725b7391e85aab41fdf592b3c0c1]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.16-upstream-stable N/A "Fixed before branching point"
6.12-upstream-stable N/A "Fixed before branching point"
6.6-upstream-stable N/A "Fixed before branching point"
6.1-upstream-stable released (6.1.28) [80c5ba0078e20d926d11d0778f9a43902664ebf0]
5.10-upstream-stable needed
sid released (6.3.7-1)
6.12-trixie-security N/A "Fixed before branching point"
6.1-bookworm-security released (6.1.37-1)
5.10-bullseye-security needed