Linux Kernel Vulnerability in Nexthop Management by Vendor
CVE-2026-74562

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
15 August 2026

What is CVE-2026-74562?

A vulnerability exists in the Linux kernel's nexthop management, where concurrent modifications to routing tables can lead to a slab-use-after-free condition. During operations involving the fib6_check_nh_list() and __nexthop_replace_notify(), improper locking can allow a race condition resulting in an incorrect handling of memory. An attacker could exploit this condition to manipulate network routing, ultimately affecting system stability and security. It is essential to update to patched versions to mitigate these risks.

Affected Version(s)

Linux 081efd18326e353c6fbfdeff903a83edde953f72

Linux 081efd18326e353c6fbfdeff903a83edde953f72 < 072cd1f21819dedd2252e704d255de3b0cfc61a7

Linux 6.16

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.