Out-of-Bounds Write Vulnerability in TLS Offload for Linux Kernel by Vendor Linux
CVE-2026-80852

Currently unrated

Key Information:

Vendor

Linux

Status
Vendor
CVE Published:
4 September 2026

What is CVE-2026-80852?

A vulnerability in the Linux kernel's TLS offload implementation could allow for out-of-bounds writes, potentially leading to system instability or compromised memory integrity. This issue arises during the handling of TLS messages, particularly when insufficient checks on fragment counts enable writes beyond allocated boundaries. Such faults can be triggered through specific system calls, risking both data corruption and unauthorized access privileges. Users are advised to update their kernel to the latest version to mitigate any potential attacks exploiting this vulnerability.

Affected Version(s)

Linux e8f69799810c32dd40c6724d829eccc70baad07f < 03ced5da6120965d80ed56dbb7d78fa5c9128906

Linux e8f69799810c32dd40c6724d829eccc70baad07f

Linux e8f69799810c32dd40c6724d829eccc70baad07f

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.