In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_tproxy: restrict to prerouting hook TPROXY is only allowed from prerouting, but nft_tproxy doesn't check this. This fixes a crash (null dereference) when using tproxy from e.g. output.
| Product | Vendor | Version |
|---|---|---|
| Linux | Linux | < 414fb08628143203d29ccd0264b5a83fb9523c03 |
| Linux | Linux | before version 31.0.101.4314 |