Linux Kernel IPv6 Infinite Loop Vulnerability in System Performance
CVE-2026-63968

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
19 July 2026

What is CVE-2026-63968?

A vulnerability in the Linux kernel's IPv6 handling could potentially lead to an infinite loop during path selection. This issue arises in the function 'fib6_select_path()', where improper handling of linked structures could prevent proper cleanup and result in unresponsive behavior. The vulnerability was identified during an audit related to previously reported issues and has been addressed with a fix that mitigates the risk of such loops occurring during normal operations.

Affected Version(s)

Linux d0ec61c9f3583b76aebdbb271f5c0d3fcccd48b2 < 3948a7d92f7678e89e1776bb2d169afcad63b1ae

Linux 52da02521ede55fb86546c3fffd9377b3261b91f

Linux 34a949e7a0869dfa31a40416d2a56973fae1807b < 0f7b73c3452635de83b8711b31abdda8e49aad7b

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.