CVE-2026-97596
N/A
Summary
In the Linux kernel, the following vulnerability has been resolved:
ipvs: reject invalid states in connection template sync records
IPVS sync receivers validate protocol states before creating or updating a connection. For connection templates, however, they only log states outside the template state range and still store the value in the connection.
A template can be returned by ordinary connection lookup. TCP and SCTP then use the invalid state as an index into their transition tables.
Reject invalid template states in both sync protocol versions before looking up or modifying a connection. The version 1 path handles both IPv4 and IPv6 records.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Linux | Linux | 275411430f892407b885be1de2548b2e632892c3 < fc10dc4511e6e2e2b4098ee115c8e5639471f23d | affected |
| Linux | Linux | 275411430f892407b885be1de2548b2e632892c3 < 50c3f06222eafe9cca7ca51a0ef83311d7cab353 | affected |
| Linux | Linux | 275411430f892407b885be1de2548b2e632892c3 < 0c61f7d8e18a978aec2a16d9acd5f682f1c72476 | affected |
| Linux | Linux | 275411430f892407b885be1de2548b2e632892c3 < 74cb39735b6cd0aff4b5584158f09376fd97aadf | affected |
| Linux | Linux | 4.19 | affected |
| Linux | Linux | 0 < 4.19 | unaffected |
| Linux | Linux | 6.12.111 <= 6.12.* | unaffected |
| Linux | Linux | 6.18.53 <= 6.18.* | unaffected |
| Linux | Linux | 7.2.7 <= 7.2.* | unaffected |
| Linux | Linux | 7.3-rc3 <= * | unaffected |
Weaknesses
References
- https://git.kernel.org/stable/c/fc10dc4511e6e2e2b4098ee115c8e5639471f23d
- https://git.kernel.org/stable/c/50c3f06222eafe9cca7ca51a0ef83311d7cab353
- https://git.kernel.org/stable/c/0c61f7d8e18a978aec2a16d9acd5f682f1c72476
- https://git.kernel.org/stable/c/74cb39735b6cd0aff4b5584158f09376fd97aadf
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.