In the Linux kernel, the following vulnerability has been resolved: netfilter: ebtables: move to two-stage removal scheme Like previous patches for x_tables, follow same pattern in ebtables. We can't reuse xt helpers: ebt_table struct layout is incompatible. table->ops assignment is now done while still holding the ebt mutex to make sure we never expose partially-filled table struct.
https://git.kernel.org/stable/c/ef395579a7631a06d61969fc712eb80402231b89
https://git.kernel.org/stable/c/b7f0544d86d439cb946515d2ef6a0a75e8626710
https://git.kernel.org/stable/c/739d5dac7b2da44a756aa4d758ee3f1ccf5a27f1