Memory Management Issue in MultiPath TCP on Linux Kernel by Linux Foundation
CVE-2026-80588

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
26 August 2026

What is CVE-2026-80588?

A memory management issue has been identified in MultiPath TCP within the Linux Kernel, where errors occurring in the receive path can lead to forward-allocated memory not being reclaimed properly. This situation can result in unbounded memory growth during problematic drop scenarios. The issue has been addressed in commit 9db5b3cec4ec, which improves the handling of memory reclamation by explicitly reclaiming forward memory when socket buffers are dropped before queuing.

Affected Version(s)

Linux a84164847b1e0a106ebc46821e5d2f9b775c9dc8 < 473f1a5ab2abc98dd9e74b95b9c23c66c47535cc

Linux 9db5b3cec4ec1c0cd3239689f5c8653d691a1754 < 8277f48a06d3aa1441f6d0b6998ccc0360d30ed8

Linux 9db5b3cec4ec1c0cd3239689f5c8653d691a1754 < 41b49a8b914ec7dcb03eae93fb27f3c464078644

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.