CVE-2026-45897
netfilter: nft_counter: serialize reset with spinlock
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_counter: serialize reset with spinlock Add a global static spinlock to serialize counter fetch+reset operations, preventing concurrent dump-and-reset from underrunning values. The lock is taken before fetching the total so that two parallel resets cannot both read the same counter values and then both subtract them. A global lock is used for simplicity since resets are infrequent. If this becomes a bottleneck, it can be replaced with a per-net lock later.
| Vendor | linux |
| Product | linux |
| Ecosystems | |
| Industries | Technology |
| Published | May 27, 2026 |
Stay Ahead of the Next One
Get instant alerts for linux linux
Be the first to know when new unknown vulnerabilities affecting linux linux are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Linux / Linux
3cb03edb4de33fd04c4ea55f47397b96a8657c53 < 0cdc6d5a26f2d1f7f15a43526841b679445c32e2 3cb03edb4de33fd04c4ea55f47397b96a8657c53 < 779c60a5190c42689534172f4b49e927c9959e4e fb1adb05ea87b6149e65a31e511756c4f470d0cd f123293db16dcd0cd81b246ae60e6362f0025d0a 6.1.107 < 6.2 6.6.48 < 6.7
Linux / Linux
6.7