Use-after-free in nfdump - #VU142738
Published: August 15, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to use-after-free in the nfcapd IPFIX template withdrawal handling when processing a valid withdraw-all IPFIX message after a template has been installed for the same exporter and observation domain. A remote attacker can send specially crafted UDP/IPFIX datagrams to cause a denial of service.
The issue is triggered by two unauthenticated datagrams from an accepted exporter: one to install a data template and one withdraw-all message for the same source IP and observation domain.