在 Linux 内核中,已修复以下漏洞: netfilter: ip6t_rpfilter:拒绝没有 inet6_dev 的路由 可能返回一个无错误但 字段为 NULL 的路由条目。当某个外层下一跳(nexthop)设备的 MTU 被降低至低于 时,会触发 清理该设备的 ,但此时使用这些下一跳对象的路由在 FIB(Forwarding Information Base,转发信息库)中仍未被清除。 特权级别较低的用户可以通过 在私有用户命名空间和网络命名空间中构造出上述状态,随后触发 IPv6 rpfilter(逆向
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-98384 | bpf: Fix out-of-bounds read of sk_protocol in bpf_sock_destroy() | |
| CVE-2026-98383 | bpf: Disallow bpf_skb_pull_data() for LWT_SEG6LOCAL | |
| CVE-2026-98382 | bpf: Reject dev-bound-only programs on other devices | |
| CVE-2026-98381 | veth: manage XDP program pointers during channel resize | |
| CVE-2026-98380 | net/sched: reject IDR error pointers when deleting actions | |
| CVE-2026-98378 | bpf: Skip unsettled links in link iterator | |
| CVE-2026-98377 | vlan: require the MAC header to be present in __vlan_insert_inner_tag() | |
| CVE-2026-98376 | bpf: Use array_map_meta_equal for percpu array inner map replacement | |
| CVE-2026-98375 | xen/netfront: drop RX packets with a short Ethernet header |
No comments yet