Out-of-Bounds Access Vulnerability in Linux Kernel Network Component
CVE-2026-64000
What is CVE-2026-64000?
A vulnerability in the Linux kernel's handling of supervision frames within the HSR (High-availability Seamless Redundancy) protocol can potentially lead to an out-of-bounds access. This issue arises when the TLV (Type-Length-Value) header is not fully linearized before being accessed. Specifically, if a truncated frame is processed, it could lead to unexpected behavior or crash the system, creating a significant risk for network stability and security. It is crucial for users to ensure they implement the latest patch that addresses this issue to safeguard their systems from potential exploitation.
Affected Version(s)
Linux eafaa88b3eb7f28aecb222281655473431d3ef2e < 09a37dca090c55ffb1a33f52d8667f1c2367ef48
Linux eafaa88b3eb7f28aecb222281655473431d3ef2e
Linux eafaa88b3eb7f28aecb222281655473431d3ef2e < 71c986c0ba45b7dc574fae27c83e7b6671556f37