๐Ÿ” CVE Alert

CVE-2026-72242

HIGH 7.5

selinux: avoid sk_socket dereference in selinux_sctp_bind_connect()

CVSS Score
7.5
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: selinux: avoid sk_socket dereference in selinux_sctp_bind_connect() selinux_sctp_bind_connect() dereferences sk->sk_socket to pass a struct socket * to selinux_socket_bind() and selinux_socket_connect_helper(). However, when the hook is invoked from the ASCONF softirq path (sctp_process_asconf), there is no file reference guaranteeing that sk->sk_socket is non-NULL. The setsockopt callers (bindx, connectx, set_primary, sendmsg connect) hold a file reference and are not affected. Both selinux_socket_bind() and selinux_socket_connect_helper() immediately resolve sock->sk, never using the struct socket * for anything else. Refactor the inner logic into helpers that take a struct sock * directly so that selinux_sctp_bind_connect() never needs to touch sk->sk_socket at all.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Aug 15, 2026
Last Updated Aug 23, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new high vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

Linux / Linux
d452930fd3b9031e59abfeddb2fa383f1403d61a < e4f3b8db1b0c5e9f6374b8996d9e1888d1042b55 d452930fd3b9031e59abfeddb2fa383f1403d61a < 2fcaf133a8fd88b69f32ebaecad93fd302da828f d452930fd3b9031e59abfeddb2fa383f1403d61a < a4bc2fb8536488b37680c0b66c59434a4b7f8c2f d452930fd3b9031e59abfeddb2fa383f1403d61a < 5d4d93f9bfbc997ffbb03cd6107e8f6979dbb9b4 d452930fd3b9031e59abfeddb2fa383f1403d61a < cc8bd47b35eca82393cbad08b1cc86f02e034439 d452930fd3b9031e59abfeddb2fa383f1403d61a < d61a80b17254be7230bc5544f8e62ddf21ab38e2 d452930fd3b9031e59abfeddb2fa383f1403d61a < 37d642b37ccdc31e1947c2ebc8dc38f03d4a0ceb d452930fd3b9031e59abfeddb2fa383f1403d61a < 56acfeb10019e200ab6787d01f8d7cbe0f01526f
Linux / Linux
4.17

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/e4f3b8db1b0c5e9f6374b8996d9e1888d1042b55 git.kernel.org: https://git.kernel.org/stable/c/2fcaf133a8fd88b69f32ebaecad93fd302da828f git.kernel.org: https://git.kernel.org/stable/c/a4bc2fb8536488b37680c0b66c59434a4b7f8c2f git.kernel.org: https://git.kernel.org/stable/c/5d4d93f9bfbc997ffbb03cd6107e8f6979dbb9b4 git.kernel.org: https://git.kernel.org/stable/c/cc8bd47b35eca82393cbad08b1cc86f02e034439 git.kernel.org: https://git.kernel.org/stable/c/d61a80b17254be7230bc5544f8e62ddf21ab38e2 git.kernel.org: https://git.kernel.org/stable/c/37d642b37ccdc31e1947c2ebc8dc38f03d4a0ceb git.kernel.org: https://git.kernel.org/stable/c/56acfeb10019e200ab6787d01f8d7cbe0f01526f