๐Ÿ” CVE Alert

CVE-2026-74474

CRITICAL 9.8

vxlan: use pskb_network_may_pull() for transmit path header pulls

CVSS Score
9.8
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: vxlan: use pskb_network_may_pull() for transmit path header pulls In vxlan_xmit(), arp_reduce(), and vxlan_mdb_entry_skb_get(), pskb_may_pull() was being called to verify the availability of network layer headers (ARP, IPv6/ND, IP/IPv6 MDB keys). However, during transmit skb->data points to the MAC header, so skb_network_offset(skb) is ETH_HLEN (14 bytes). Using pskb_may_pull(skb, len) only checks len bytes from skb->data rather than skb_network_offset(skb) + len, which can leave part of the network header in non-linear frags. Replace these remaining pskb_may_pull() calls with pskb_network_may_pull() to properly account for the MAC header offset.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Aug 15, 2026
Last Updated Sep 14, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new critical vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

Linux / Linux
e4f67addf158f98f8197e08974966b18480dc751 < 371425d4be7795e9158388af9eee0201e6047410 e4f67addf158f98f8197e08974966b18480dc751 < bb01c51950c3ff3c76acdd54b85ab38ccc2a8bb4 e4f67addf158f98f8197e08974966b18480dc751 < 6146901881f09ef063eb34ad389f63231f8486f5 e4f67addf158f98f8197e08974966b18480dc751 < 94dee751aad627b3645d424b5d0c736d394573e9 e4f67addf158f98f8197e08974966b18480dc751 < 7076a34b6e33315dc160b4612bfea1c597495585 e4f67addf158f98f8197e08974966b18480dc751 < b9553558b48db54ac9273e6b98d7263ef5c1a329
Linux / Linux
3.8

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/371425d4be7795e9158388af9eee0201e6047410 git.kernel.org: https://git.kernel.org/stable/c/bb01c51950c3ff3c76acdd54b85ab38ccc2a8bb4 git.kernel.org: https://git.kernel.org/stable/c/6146901881f09ef063eb34ad389f63231f8486f5 git.kernel.org: https://git.kernel.org/stable/c/94dee751aad627b3645d424b5d0c736d394573e9 git.kernel.org: https://git.kernel.org/stable/c/7076a34b6e33315dc160b4612bfea1c597495585 git.kernel.org: https://git.kernel.org/stable/c/b9553558b48db54ac9273e6b98d7263ef5c1a329