| Summary | In the Linux kernel, the following vulnerability has been resolved: netfilter: ctnetlink: zero expect NAT fields when CTA_EXPECT_NAT absent ctnetlink_alloc_expect() allocates expectations from a non-zeroing The safe sibling nf_ct_expect_init(), used by the packet path, Zero saved_addr, saved_proto and dir in the else branch, guarded Confirmed by priming the expect slab with NAT-bearing expectations, |
|---|---|
| Publication Date | May 2, 2026, 12:16 a.m. |
| Registration Date | May 2, 2026, 4:07 a.m. |
| Last Update | May 2, 2026, 12:24 a.m. |