In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_socket: remove WARN_ON_ONCE on maximum cgroup level cgroup maximum depth is INT_MAX by default, there is a cgroup toggle to restrict this maximum depth to a more reasonable value not to harm performance. Remove unnecessary WARN_ON_ONCE which is reachable from userspace.
Product | Vendor | Version |
---|---|---|
Linux | Linux | < d39f5be62f098fe367d672b4dd4bc4b2b80e08e7 |
Linux | Linux | n/a |