CVE-2026-72253
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Summary
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf_conntrack_sip: validate skb_dst() before accessing it
tc ingress and openvswitch do not guarantee routing information to be available. These subsystems use the conntrack helper infrastructure, and the SIP helper relies on the skb_dst() to be present if sip_external_media is set to 1 (which is disabled by default as a module parameter).
This effectively disables the sip_external_media toggle for these subsystems without resulting in a crash.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | cae3a2627520c3795b54533c5328b77af3405dbe < e64a48c50a1ff565a98c6a98d82b5b942868e76e | affected |
| Linux | Linux | cae3a2627520c3795b54533c5328b77af3405dbe < c199ed687c00841daf60e9d131976958583a8c09 | affected |
| Linux | Linux | cae3a2627520c3795b54533c5328b77af3405dbe < 09755dc62b026076b1d47f83489eb0547c8135e0 | affected |
| Linux | Linux | cae3a2627520c3795b54533c5328b77af3405dbe < b843a96252f672332837ea2ecb7c8db0acf68e20 | affected |
| Linux | Linux | cae3a2627520c3795b54533c5328b77af3405dbe < e5e24a365a5e024efef63cc49abb345fbd4852c5 | affected |
| Linux | Linux | 4.3 | affected |
| Linux | Linux | 0 < 4.3 | unaffected |
| Linux | Linux | 6.6.148 <= 6.6.* | unaffected |
| Linux | Linux | 6.12.101 <= 6.12.* | unaffected |
| Linux | Linux | 6.18.42 <= 6.18.* | unaffected |
| Linux | Linux | 7.1.5 <= 7.1.* | unaffected |
| Linux | Linux | 7.2 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/e64a48c50a1ff565a98c6a98d82b5b942868e76e
- https://git.kernel.org/stable/c/c199ed687c00841daf60e9d131976958583a8c09
- https://git.kernel.org/stable/c/09755dc62b026076b1d47f83489eb0547c8135e0
- https://git.kernel.org/stable/c/b843a96252f672332837ea2ecb7c8db0acf68e20
- https://git.kernel.org/stable/c/e5e24a365a5e024efef63cc49abb345fbd4852c5
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.