Data Leakage Vulnerability in Linux Kernel PSAMPLE Feature
CVE-2026-64553
Currently unrated
What is CVE-2026-64553?
A vulnerability exists in the Linux kernel concerning the PSAMPLE feature, where the implementation fails to properly handle padding in netlink attributes. Specifically, the open coding of nla_put() does not clear the padding when populating the attribute with packet data. As a consequence, sensitive information can leak, potentially leading to unauthorized data exposure. Users should ensure their kernel is updated to the latest stable version to mitigate this issue.
Affected Version(s)
Linux 6ae0a6286171154661b74f7f550f9441c6008424 < 0d3ea2ccddda442077fc44f11d873209c97ec50b
Linux 6ae0a6286171154661b74f7f550f9441c6008424 < 7fe7e6949964aa8ee6305f09db2dc9eede977bb3
Linux 6ae0a6286171154661b74f7f550f9441c6008424