CVE-2026-64000

Summary

In the Linux kernel, the following vulnerability has been resolved:

net: hsr: fix potential OOB access in supervision frame handling

Ensure the entire TLV header is linearized before access by adding sizeof(struct hsr_sup_tlv) to the pskb_may_pull() calls. Without this, a truncated frame could cause an out-of-bounds access.

Affected Software

VendorProductVersion RangeStatus
LinuxLinuxeafaa88b3eb7f28aecb222281655473431d3ef2e < 09a37dca090c55ffb1a33f52d8667f1c2367ef48affected
LinuxLinuxeafaa88b3eb7f28aecb222281655473431d3ef2e < a4b64f3e9c7b8259f7dd251a0313420ba7c01852affected
LinuxLinuxeafaa88b3eb7f28aecb222281655473431d3ef2e < 71c986c0ba45b7dc574fae27c83e7b6671556f37affected
LinuxLinuxeafaa88b3eb7f28aecb222281655473431d3ef2e < fbd0662f9c9a66e8cc3df3099cca8ed6d3837cc7affected
LinuxLinuxeafaa88b3eb7f28aecb222281655473431d3ef2e < 78607a6854a22a2502f68092202e75a39af4865daffected
LinuxLinuxeafaa88b3eb7f28aecb222281655473431d3ef2e < f229426072fc865654a60978bb7fda790a051ff3affected
LinuxLinux5.16affected
LinuxLinux0 < 5.16unaffected
LinuxLinux6.1.176 <= 6.1.*unaffected
LinuxLinux6.6.143 <= 6.6.*unaffected
LinuxLinux6.12.93 <= 6.12.*unaffected
LinuxLinux6.18.35 <= 6.18.*unaffected
LinuxLinux7.0.12 <= 7.0.*unaffected
LinuxLinux7.1 <= *unaffected

Weaknesses

References