CVE-2026-80637

Summary

In the Linux kernel, the following vulnerability has been resolved:

netfilter: synproxy: fix unaligned memory access in timestamp adjustment

Use get_unaligned_be32() and put_unaligned_be32() to safely read and write the timestamp fields. This prevents performance degradation due to unaligned memory access or even a crash on strict alignment architectures.

This follows the implementation of timestamp parsing in the networking stack at tcp_parse_options() and synproxy_parse_options().

Affected Software

VendorProductVersion RangeStatus
LinuxLinux48b1de4c110a7afa4b85862f6c75af817db26fad < 2b8e7aaa38002d8ee2f48d87b1f392eadd8e98c4affected
LinuxLinux48b1de4c110a7afa4b85862f6c75af817db26fad < 5c9c67cf7a3d16051dfb90e98836f530964dfb8eaffected
LinuxLinux48b1de4c110a7afa4b85862f6c75af817db26fad < ea3d2caa5bfacf5db5c1cad521ca5d9144edd9a7affected
LinuxLinux48b1de4c110a7afa4b85862f6c75af817db26fad < 992c20bc8a4aba220c8b95b467d049289778dad6affected
LinuxLinux3.12affected
LinuxLinux0 < 3.12unaffected
LinuxLinux6.12.97 <= 6.12.*unaffected
LinuxLinux6.18.40 <= 6.18.*unaffected
LinuxLinux7.1.5 <= 7.1.*unaffected
LinuxLinux7.2 <= *unaffected

Weaknesses

References