Page Cache Corruption Vulnerability in Linux Kernel - Vendor: Linux
CVE-2026-46331
What is CVE-2026-46331?
An issue exists in the Linux Kernel where improper handling of copy-on-write (COW) operations can lead to page cache corruption. This is due to the tcf_pedit_act() function, which computes the COW range without considering runtime header offsets added by typed keys. As a result, portions of the write region may remain un-COW'd, potentially causing instability during packet processing. The vulnerability has been addressed by refining the placement of skb_ensure_writable() within the key loop, ensuring accurate offset calculations and including overflow checks to enhance overall system integrity.
Affected Version(s)
Linux 8b796475fd7882663a870456466a4fb315cc1bd6 < 899ee91156e57784090c5565e4f31bd7dbffbc5a
Linux d0c38a914b0c4c21d553da801003d36979016726
Linux 2ec2dd7d51a9320151f275ddbb2b53260fb32ca1