๐Ÿ” CVE Alert

CVE-2026-31405

UNKNOWN 0.0

media: dvb-net: fix OOB access in ULE extension header tables

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
2th

In the Linux kernel, the following vulnerability has been resolved: media: dvb-net: fix OOB access in ULE extension header tables The ule_mandatory_ext_handlers[] and ule_optional_ext_handlers[] tables in handle_one_ule_extension() are declared with 255 elements (valid indices 0-254), but the index htype is derived from network-controlled data as (ule_sndu_type & 0x00FF), giving a range of 0-255. When htype equals 255, an out-of-bounds read occurs on the function pointer table, and the OOB value may be called as a function pointer. Add a bounds check on htype against the array size before either table is accessed. Out-of-range values now cause the SNDU to be discarded.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Apr 6, 2026
Last Updated Apr 13, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 29ef43ceb121d67b87f4cbb08439e4e9e732eff8 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 1a6da3dbb9985d00743073a1cc1f96e59f5abc30 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 145e50c2c700fa52b840df7bab206043997dd18e 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 8bde543d2a5f935ba2a6a6325a2e02f8a9256fbe 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < f2b65dcb78c8990e4c68a906627433be1fe38a92 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 < 24d87712727a5017ad142d63940589a36cd25647
Linux / Linux
2.6.12

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/29ef43ceb121d67b87f4cbb08439e4e9e732eff8 git.kernel.org: https://git.kernel.org/stable/c/1a6da3dbb9985d00743073a1cc1f96e59f5abc30 git.kernel.org: https://git.kernel.org/stable/c/145e50c2c700fa52b840df7bab206043997dd18e git.kernel.org: https://git.kernel.org/stable/c/8bde543d2a5f935ba2a6a6325a2e02f8a9256fbe git.kernel.org: https://git.kernel.org/stable/c/f2b65dcb78c8990e4c68a906627433be1fe38a92 git.kernel.org: https://git.kernel.org/stable/c/24d87712727a5017ad142d63940589a36cd25647