UBUNTU-CVE-2026-23272

    Dashboard / Vulnerabilities / UBUNTU-CVE-2026-23272

    UBUNTU-CVE-2026-23272

    Published: 20 Mar 2026Last Modified: 22 Sept 2026
    Upstream:
    Aliases:

    Summary:

    Details: In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: unconditionally bump set->nelems before insertion In case that the set is full, a new element gets published then removed without waiting for the RCU grace period, while RCU reader can be walking over it already. To address this issue, add the element transaction even if set is full, but toggle the set_full flag to report -ENFILE so the abort path safely unwinds the set to its previous state. As for element updates, decrement set->nelems to restore it. A simpler fix is to call synchronize_rcu() in the error path. However, with a large batch adding elements to already maxed-out set, this could cause noticeable slowdown of such batches.

    References: https://ubuntu.com/security/CVE-2026-23272, https://www.cve.org/CVERecord?id=CVE-2026-23272, https://git.kernel.org/stable/c/6826131c7674329335ca25df2550163eb8a1fd0c, https://git.kernel.org/stable/c/ccb8c8f3c1127cf34d18c737309897c68046bf21, https://git.kernel.org/stable/c/def602e498a4f951da95c95b1b8ce8ae68aa733a, https://ubuntu.com/security/notices/USN-8490-1, https://ubuntu.com/security/notices/USN-8491-1, https://ubuntu.com/security/notices/USN-8492-1, https://ubuntu.com/security/notices/USN-8493-1, https://ubuntu.com/security/notices/USN-8492-2, https://ubuntu.com/security/notices/USN-8497-1, https://ubuntu.com/security/notices/USN-8498-1, https://ubuntu.com/security/notices/USN-8499-1, https://ubuntu.com/security/notices/USN-8493-2, https://ubuntu.com/security/notices/USN-8508-1, https://ubuntu.com/security/notices/USN-8492-3, https://ubuntu.com/security/notices/USN-8490-2, https://ubuntu.com/security/notices/USN-8492-4, https://ubuntu.com/security/notices/USN-8492-5, https://ubuntu.com/security/notices/USN-8527-1, https://ubuntu.com/security/notices/USN-8528-1, https://ubuntu.com/security/notices/USN-8529-1, https://ubuntu.com/security/notices/USN-8530-1, https://ubuntu.com/security/notices/USN-8545-1, https://ubuntu.com/security/notices/USN-8546-1, https://ubuntu.com/security/notices/USN-8547-1, https://ubuntu.com/security/notices/USN-8604-1, https://ubuntu.com/security/notices/USN-8605-1, https://ubuntu.com/security/notices/USN-8606-1, https://ubuntu.com/security/notices/USN-8607-1, https://ubuntu.com/security/notices/USN-8609-1, https://ubuntu.com/security/notices/USN-8547-2, https://ubuntu.com/security/notices/USN-8615-1, https://ubuntu.com/security/notices/USN-8616-1, https://ubuntu.com/security/notices/USN-8617-1, https://ubuntu.com/security/notices/USN-8619-1, https://ubuntu.com/security/notices/USN-8615-2, https://ubuntu.com/security/notices/USN-8635-1, https://ubuntu.com/security/notices/USN-8529-2, https://ubuntu.com/security/notices/USN-8530-2

    Affected packages

    Package

    Name: linux-azure

    Purl: pkg:deb/ubuntu/linux-azure?arch=source&distro=esm-infra-legacy%2Ftrusty

    Affected ranges

    Type: ECOSYSTEM

    Events:

    Introduced- 0
    Fixed -4.15.0-1205.220~14.04.1

    Affected versions

    4.15.0-1023.24~14.04.1
    4.15.0-1030.31~14.04.1
    4.15.0-1031.32~14.04.1
    4.15.0-1032.33~14.04.2
    4.15.0-1035.36~14.04.2
    4.15.0-1036.38~14.04.2
    4.15.0-1037.39~14.04.2
    4.15.0-1039.41~14.04.2
    4.15.0-1040.44~14.04.1
    4.15.0-1041.45~14.04.1
    4.15.0-1042.46~14.04.1
    4.15.0-1045.49~14.04.1
    4.15.0-1046.50~14.04.1
    4.15.0-1047.51~14.04.1
    4.15.0-1049.54~14.04.1
    4.15.0-1050.55~14.04.1
    4.15.0-1051.56~14.04.1
    4.15.0-1052.57~14.04.1
    4.15.0-1055.60~14.04.1
    4.15.0-1056.61~14.04.1
    4.15.0-1057.62~14.04.1
    4.15.0-1059.64~14.04.1
    4.15.0-1060.65~14.04.1
    4.15.0-1061.66~14.04.1
    4.15.0-1063.68~14.04.1
    4.15.0-1064.69~14.04.1
    4.15.0-1066.71~14.04.1
    4.15.0-1067.72~14.04.1
    4.15.0-1069.74~14.04.1
    4.15.0-1071.76~14.04.1
    4.15.0-1074.79~14.04.1
    4.15.0-1077.82~14.04.1
    4.15.0-1082.92~14.04.1
    4.15.0-1083.93~14.04.1
    4.15.0-1089.99~14.04.1
    4.15.0-1091.101~14.04.1
    4.15.0-1092.102~14.04.1
    4.15.0-1093.103~14.04.1
    4.15.0-1095.105~14.04.1
    4.15.0-1096.106~14.04.1
    4.15.0-1098.109~14.04.1
    4.15.0-1100.111~14.04.1
    4.15.0-1102.113~14.04.1
    4.15.0-1103.114~14.04.1
    4.15.0-1106.118~14.04.1
    4.15.0-1108.120~14.04.1
    4.15.0-1109.121~14.04.1
    4.15.0-1110.122~14.04.1
    4.15.0-1111.123~14.04.1
    4.15.0-1112.124~14.04.1
    4.15.0-1113.126~14.04.1
    4.15.0-1114.127~14.04.1
    4.15.0-1115.128~14.04.1
    4.15.0-1118.131~14.04.1
    4.15.0-1121.134~14.04.1
    4.15.0-1122.135~14.04.1
    4.15.0-1123.136~14.04.1
    4.15.0-1124.137~14.04.1
    4.15.0-1125.138~14.04.1
    4.15.0-1126.139~14.04.1
    4.15.0-1127.140~14.04.1
    4.15.0-1129.142~14.04.1
    4.15.0-1130.143~14.04.1
    4.15.0-1131.144~14.04.1
    4.15.0-1133.146~14.04.1
    4.15.0-1134.147~14.04.1
    4.15.0-1136.149~14.04.1
    4.15.0-1137.150~14.04.1
    4.15.0-1138.151~14.04.1
    4.15.0-1139.152~14.04.1
    4.15.0-1142.156~14.04.1
    4.15.0-1145.160~14.04.1
    4.15.0-1146.161~14.04.1
    4.15.0-1149.164~14.04.1
    4.15.0-1150.165~14.04.1
    4.15.0-1151.166~14.04.1
    4.15.0-1153.168~14.04.1
    4.15.0-1157.172~14.04.2
    4.15.0-1158.173~14.04.1
    4.15.0-1159.174~14.04.1
    4.15.0-1162.177~14.04.1
    4.15.0-1163.178~14.04.1
    4.15.0-1164.179~14.04.1
    4.15.0-1165.180~14.04.1
    4.15.0-1166.181~14.04.1
    4.15.0-1167.182~14.04.1
    4.15.0-1168.183~14.04.1
    4.15.0-1169.184~14.04.1
    4.15.0-1170.185~14.04.1
    4.15.0-1171.186~14.04.1
    4.15.0-1172.187~14.04.1
    4.15.0-1173.188~14.04.1
    4.15.0-1174.189~14.04.1
    4.15.0-1175.190~14.04.1
    4.15.0-1176.191~14.04.1
    4.15.0-1177.192~14.04.1
    4.15.0-1178.193~14.04.1
    4.15.0-1179.194~14.04.1
    4.15.0-1180.195~14.04.1
    4.15.0-1181.196~14.04.1
    4.15.0-1182.197~14.04.1
    4.15.0-1183.198~14.04.1
    4.15.0-1184.199~14.04.1
    4.15.0-1185.200~14.04.1
    4.15.0-1186.201~14.04.1
    4.15.0-1187.202~14.04.1
    4.15.0-1188.203~14.04.1
    4.15.0-1189.204~14.04.1
    4.15.0-1190.205~14.04.1
    4.15.0-1191.206~14.04.1
    4.15.0-1192.207~14.04.1
    4.15.0-1193.208~14.04.1
    4.15.0-1194.209~14.04.1
    4.15.0-1195.210~14.04.1
    4.15.0-1196.211~14.04.1
    4.15.0-1197.212~14.04.1
    4.15.0-1199.214~14.04.1
    4.15.0-1200.215~14.04.1
    4.15.0-1201.216~14.04.1
    4.15.0-1202.217~14.04.1

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High