CVE-2026-53006: fallo crítico en Linux
ipv6: fix possible UAF in icmpv6_rcv()
Publicada el · Actualizada el
28Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackcvss 9.8epss 0.5%
probabilidad de explotación
0.5%top 57% de las CVE
explotación observada
noninguna fuente lo reporta
In the Linux kernel, the following vulnerability has been resolved:
ipv6: fix possible UAF in icmpv6_rcv()
Caching saddr and daddr before pskb_pull() is problematic
since skb->head can change.
Remove these temporary variables:
- We only access &ipv6_hdr(skb)->saddr and &ipv6_hdr(skb)->daddr
when net_dbg_ratelimited() is called in the slow path.
- Avoid potential future misuse after pskb_pull() call.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Productos afectados
Linux · LinuxCVEs relacionadas — Linux
En el mismo producto, de las más peligrosas a las menos.
CVE-2024-53197HIGHALSA: usb-audio: Fix potential out-of-bound accesses for Extigy and Mbox devicesEPSS 4.1%KEVCVE-2026-31431HIGHcrypto: algif_aead - Revert to operating out-of-placeEPSS 3.4%KEVCVE-2024-53104HIGHmedia: uvcvideo: Skip parsing frames of type UVC_VS_UNDEFINED in uvc_parse_formatEPSS 3.4%KEVCVE-2025-39682CRITICALtls: fix handling of zero-length records on the rx_listEPSS 2.9%KEVCVE-2024-36971HIGHnet: fix __dst_negative_advice() raceEPSS 2.7%KEVCVE-2024-53150HIGHALSA: usb-audio: Fix out of bounds reads when finding clock sourcesEPSS 1.4%KEV
Referencias
https://access.redhat.com/errata/RHSA-2026:45192https://access.redhat.com/errata/RHSA-2026:47010https://access.redhat.com/errata/RHSA-2026:47011https://access.redhat.com/errata/RHSA-2026:47017https://access.redhat.com/errata/RHSA-2026:61932https://access.redhat.com/errata/RHSA-2026:62568https://access.redhat.com/errata/RHSA-2026:64767https://access.redhat.com/errata/RHSA-2026:65710https://access.redhat.com/errata/RHSA-2026:65711https://access.redhat.com/errata/RHSA-2026:65712https://access.redhat.com/errata/RHSA-2026:67721https://access.redhat.com/errata/RHSA-2026:67723