Linux Kernel Vulnerability Affecting HSR Device Setup
CVE-2026-100071

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
25 September 2026

What is CVE-2026-100071?

A vulnerability exists in the Linux kernel that affects the HSR (High-Availability Seamless Redundancy) device setup. When an RX handler for a lower device is registered before a potential failure occurs, this can lead to dynamic nodes being incorrectly learned into the node database. Specifically, if the setup fails after frames are received, it may result in memory not being released properly. The fix ensures that both dynamic databases are cleared during error handling, maintaining system stability and security by preventing resource leaks.

Affected Version(s)

Linux 81ba6afd6e6443d2bf4bf40f16df1f1f91c603f8

Linux 81ba6afd6e6443d2bf4bf40f16df1f1f91c603f8 < 0a340ffd96943a49a78e367efac9517ca767d99b

Linux 81ba6afd6e6443d2bf4bf40f16df1f1f91c603f8

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.