Out-of-Bounds Access Vulnerability in Linux Kernel Network Component
CVE-2026-64000

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
19 July 2026

What is CVE-2026-64000?

A vulnerability in the Linux kernel's handling of supervision frames within the HSR (High-availability Seamless Redundancy) protocol can potentially lead to an out-of-bounds access. This issue arises when the TLV (Type-Length-Value) header is not fully linearized before being accessed. Specifically, if a truncated frame is processed, it could lead to unexpected behavior or crash the system, creating a significant risk for network stability and security. It is crucial for users to ensure they implement the latest patch that addresses this issue to safeguard their systems from potential exploitation.

Affected Version(s)

Linux eafaa88b3eb7f28aecb222281655473431d3ef2e < 09a37dca090c55ffb1a33f52d8667f1c2367ef48

Linux eafaa88b3eb7f28aecb222281655473431d3ef2e

Linux eafaa88b3eb7f28aecb222281655473431d3ef2e < 71c986c0ba45b7dc574fae27c83e7b6671556f37

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.