๐Ÿ” CVE Alert

CVE-2026-74474

UNKNOWN 0.0

vxlan: use pskb_network_may_pull() for transmit path header pulls

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: vxlan: use pskb_network_may_pull() for transmit path header pulls In vxlan_xmit(), arp_reduce(), and vxlan_mdb_entry_skb_get(), pskb_may_pull() was being called to verify the availability of network layer headers (ARP, IPv6/ND, IP/IPv6 MDB keys). However, during transmit skb->data points to the MAC header, so skb_network_offset(skb) is ETH_HLEN (14 bytes). Using pskb_may_pull(skb, len) only checks len bytes from skb->data rather than skb_network_offset(skb) + len, which can leave part of the network header in non-linear frags. Replace these remaining pskb_may_pull() calls with pskb_network_may_pull() to properly account for the MAC header offset.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Aug 15, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
e4f67addf158f98f8197e08974966b18480dc751 < 94dee751aad627b3645d424b5d0c736d394573e9 e4f67addf158f98f8197e08974966b18480dc751 < 7076a34b6e33315dc160b4612bfea1c597495585 e4f67addf158f98f8197e08974966b18480dc751 < b9553558b48db54ac9273e6b98d7263ef5c1a329
Linux / Linux
3.8

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/94dee751aad627b3645d424b5d0c736d394573e9 git.kernel.org: https://git.kernel.org/stable/c/7076a34b6e33315dc160b4612bfea1c597495585 git.kernel.org: https://git.kernel.org/stable/c/b9553558b48db54ac9273e6b98d7263ef5c1a329