CVE-2026-43093
xsk: tighten UMEM headroom validation to account for tailroom and min frame
In the Linux kernel, the following vulnerability has been resolved:
xsk: tighten UMEM headroom validation to account for tailroom and min frame
The current headroom validation in xdp_umem_reg() could leave us with
insufficient space dedicated to even receive minimum-sized ethernet
frame. Furthermore if multi-buffer would come to play then
skb_shared_info stored at the end of XSK frame would be corrupted.
HW typically works with 128-aligned sizes so let us provide this value
as bare minimum.
Multi-buffer setting is known later in the configuration process so
besides accounting for 128 bytes, let us also take care of tailroom space
upfront.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Produtos afetados
Linux · LinuxQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
https://git.kernel.org/stable/c/0ec4d3f6e6934deb843b561ae048cd17218e5ad1https://git.kernel.org/stable/c/1a6051cd7e3e4c54ff3854a43b638b9292af5e67https://git.kernel.org/stable/c/5f123bc278bf4e3283d8606321bebbfd299f4384https://git.kernel.org/stable/c/6523bc1b40e69301f24c14338b762af4739d6d39https://git.kernel.org/stable/c/8769708add9eadeea8041a9761771bb715a87104https://git.kernel.org/stable/c/9ea6ba4f3195dcba6e8b3e7b2e748593b7cafb12https://git.kernel.org/stable/c/a03975beb9f6af0d8ac051e30b2abeabe618414fhttps://git.kernel.org/stable/c/a315e022a72d95ef5f1d4e58e903cb492b0ad931