Black & White Path
Aug 28, 2026 · Information Security
A Single Missing ‘!’ in nf_tables Triggers Full Root Compromise (CVE‑2026‑23111)
CVE‑2026‑23111 is a local privilege escalation in the Linux kernel’s nf_tables subsystem caused by a reversed conditional in nft_map_catchall_activate(), where the absence of a ‘!’ leads to a use‑after‑free, enabling an attacker to chain UAF, leak kernel addresses, build a ROP payload and gain root.
CVE-2026-23111Linux kernelROP
0 likes · 9 min read
