๐Ÿ” CVE Alert

CVE-2026-74668

HIGH 7.8

packet: use consistent hard_header_len in TX_RING send path

CVSS Score
7.8
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: packet: use consistent hard_header_len in TX_RING send path tpacket_snd() reads dev->hard_header_len independently for skb allocation and header construction in tpacket_fill_skb(). Concurrent netdevice reconfiguration can therefore make the reserved headroom smaller than the amount later pushed, or make copylen - hard_header_len negative. Snapshot hard_header_len once before processing ring frames and use it for the frame limit, headroom allocation, copy length, and skb construction. Pass the snapshot to tpacket_fill_skb(). The separate SOCK_DGRAM consistency problem between hard_header_len and header_ops->create is not addressed here.

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Aug 22, 2026
Last Updated Aug 27, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new high vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability

Affected Versions

Linux / Linux
69e3c75f4d541a6eb151b3ef91f34033cb3ad6e1 < 9c7e8ff48c377bef18c3d178748aea0575b69ede 69e3c75f4d541a6eb151b3ef91f34033cb3ad6e1 < 2a73b2c37ee3060a880b53cd24783d93fc7be5f8 69e3c75f4d541a6eb151b3ef91f34033cb3ad6e1 < e79f59a8527a49078cfaf8fe8fb5fcefc20c76d2 69e3c75f4d541a6eb151b3ef91f34033cb3ad6e1 < d85d2fd54e901637c81d847811e03c662aee13cd 69e3c75f4d541a6eb151b3ef91f34033cb3ad6e1 < 016763e829cac37b3234eace86fd0a4c560de4a7 69e3c75f4d541a6eb151b3ef91f34033cb3ad6e1 < 27e068d1b35dbec10a3cf268887c94407be4badc 69e3c75f4d541a6eb151b3ef91f34033cb3ad6e1 < d48ea5c9c4c34dc0df621f0e39ed3a16b644621a 69e3c75f4d541a6eb151b3ef91f34033cb3ad6e1 < 21b5953e7494c16a42e6cd8cf110e18d13ae4a6b
Linux / Linux
2.6.31

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/9c7e8ff48c377bef18c3d178748aea0575b69ede git.kernel.org: https://git.kernel.org/stable/c/2a73b2c37ee3060a880b53cd24783d93fc7be5f8 git.kernel.org: https://git.kernel.org/stable/c/e79f59a8527a49078cfaf8fe8fb5fcefc20c76d2 git.kernel.org: https://git.kernel.org/stable/c/d85d2fd54e901637c81d847811e03c662aee13cd git.kernel.org: https://git.kernel.org/stable/c/016763e829cac37b3234eace86fd0a4c560de4a7 git.kernel.org: https://git.kernel.org/stable/c/27e068d1b35dbec10a3cf268887c94407be4badc git.kernel.org: https://git.kernel.org/stable/c/d48ea5c9c4c34dc0df621f0e39ed3a16b644621a git.kernel.org: https://git.kernel.org/stable/c/21b5953e7494c16a42e6cd8cf110e18d13ae4a6b