Adaptation Layer Vulnerability in Linux Kernel Affecting Multiple Distributions
CVE-2026-80717
What is CVE-2026-80717?
A vulnerability in the Linux kernel's handling of the SCTP Adaptation Layer Indication parameter has been identified. When processing parameters, the system may accept an incorrectly sized parameter, which can lead to the disclosure of sensitive information from the receive buffer. Specifically, a malformed parameter during the initialization phase can result in inadvertent data leakage, as data beyond the declared size may be accessed. To mitigate this issue, it is vital to ensure that the declared length of parameters matches their expected size, thus preventing the potential exploitation of the vulnerability.
Affected Version(s)
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 4c92c601c061e5602db2edeea54fef74aa304027
Linux 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 7b7e4e3640d57bd8857f0052c8b0d8ed4e5e954a