๐Ÿ” CVE Alert

CVE-2026-97939

UNKNOWN 0.0

ipmr: account multicast table and route memory

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

In the Linux kernel, the following vulnerability has been resolved: ipmr: account multicast table and route memory A netadmin in a user+net namespace can create many IPv4 and IPv6 multicast routing tables with MRT_TABLE and MRT6_TABLE. Each unseen id allocates an mr_table via the shared mr_table_alloc(), links it into the per-net list, and leaves it until netns teardown. Those objects were not charged to memcg, so the host unreclaimable slab grows with the table count. Account mr_table allocations with GFP_KERNEL_ACCOUNT and mark the IPv4/IPv6 MFC caches SLAB_ACCOUNT. This matches the established handling of IP addresses, routes and alternate interface names. Unresolved MFC entries are still allocated from softIRQ with GFP_ATOMIC and are not charged. They expire after 10 seconds and are bounded by the socket receive queue; see commit 0079ad8e8dc3 ("ipmr: remove hard code cache_resolve_queue_len limit").

Vendor linux
Product linux
Ecosystems
Industries
Technology
Published Sep 25, 2026
Stay Ahead of the Next One

Get instant alerts for linux linux

Be the first to know when new unknown vulnerabilities affecting linux linux are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Linux / Linux
f0ad0860d01e47a3ffd220564c5c653b3afbe962 < 0264b3ee09b118fec8a5471b4ca288f8ab84722f f0ad0860d01e47a3ffd220564c5c653b3afbe962 < d0a2e2a4ee6bfe51e398bfb6921a7d0f4c26bc1c f0ad0860d01e47a3ffd220564c5c653b3afbe962 < b7ee18725f2292ab554aa96a101ae42d45f008bd
Linux / Linux
2.6.35

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
git.kernel.org: https://git.kernel.org/stable/c/0264b3ee09b118fec8a5471b4ca288f8ab84722f git.kernel.org: https://git.kernel.org/stable/c/d0a2e2a4ee6bfe51e398bfb6921a7d0f4c26bc1c git.kernel.org: https://git.kernel.org/stable/c/b7ee18725f2292ab554aa96a101ae42d45f008bd