Buffer Corruption in Netfilter Component of Linux Kernel
CVE-2026-64006

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
19 July 2026

What is CVE-2026-64006?

A vulnerability was identified in the Linux kernel's netfilter component, affecting the handling of the shift operations in certain scenarios. Specifically, the issue arises when the source and destination memory locations overlap during left and right shift operations. This could lead to incorrect calculations for carry values, potentially compromising the integrity of packet processing. A temporary variable was introduced to cache the original source value before modifications, ensuring that carry calculations remain accurate. The vulnerability highlights the importance of ensuring memory boundaries are respected in operations to prevent unexpected behavior.

Affected Version(s)

Linux 567d746b55bc66d3800c9ae91d50f0c5deb2fd93

Linux 567d746b55bc66d3800c9ae91d50f0c5deb2fd93 < 96bea2a7baac4a1137c188dc7610184487ab30a7

Linux 567d746b55bc66d3800c9ae91d50f0c5deb2fd93

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.