Address Configuration Flaw in Linux Kernel by The Linux Foundation
CVE-2026-74398

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
15 August 2026

What is CVE-2026-74398?

A flaw in the Linux kernel's address configuration process can lead to potential instability during the Duplicate Address Detection (DAD) process. The issue arises when the state transitions from DAD to POSTDAD while allowing a concurrent process to modify the state to DEAD. This can result in a general protection fault due to attempts to overwrite a poisoned list entry. The correct re-sequencing of locks and state checks is necessary to mitigate this flaw and ensure reliable address configuration.

Affected Version(s)

Linux c15b1ccadb323ea50023e8f1cca2954129a62b51 < 47b05836705b63dab93d9ac7c69a3a507375ef80

Linux c15b1ccadb323ea50023e8f1cca2954129a62b51

Linux c15b1ccadb323ea50023e8f1cca2954129a62b51 < 875c284c0f98b042bb97abad460f63a24c977f88

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.