Linux Kernel Vulnerability in IP GRE Tunneling Feature by Linux
CVE-2026-63829
What is CVE-2026-63829?
The Linux kernel had a vulnerability in the IP GRE (Generic Routing Encapsulation) tunneling feature that allowed unauthorized users to perform changelink operations on network devices. This occurred because the required administrative capability (CAP_NET_ADMIN) was only checked against the network namespace of the device, not the namespace of the tunnel itself, potentially enabling privilege escalation. The vulnerability has been addressed by ensuring that the proper permissions are checked within the relevant network namespace, preventing unauthorized modifications to live tunnel fields.
Affected Version(s)
Linux b57708add31494175be741ed3fd24023b50c3423 < 9831bc9ecb402957810c2045c663fbfe9b09e296
Linux b57708add31494175be741ed3fd24023b50c3423 < 1697957eb0971d420dde42862b88eb43506a1105
Linux b57708add31494175be741ed3fd24023b50c3423 < 47b5d3d506609b08b2e1f7c14f0b681a1953d572