In the Linux kernel, the following vulnerability has been resolved:
xsk: validate launch-time metadata size
Launch-time metadata extends beyond the first 16 bytes of struct xsk_tx_metadata. Reject the request when the registered metadata area does not contain the complete field.
Snapshot the validated flags for the generic transmit path and use that snapshot for request and completion processing, avoiding inconsistent decisions if user space changes the flags concurrently.
Note that only xsk_skb_metadata is properly using the flags, __xsk_buff_get_metadata ignores them. Next commits address that.
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Amazon_linux_2023 | — | Upgrade bpftool6.18-debuginfoUpgrade kernel6.18-debuginfo-common-aarch64Upgrade kernel6.18-develUpgrade perf6.18-debuginfoUpgrade python3-perf6.18-debuginfoUpgrade kernel6.18-debuginfoUpgrade python3-perf6.18Upgrade perf6.18Upgrade kernel6.18-debuginfo-common-x86_64Upgrade bpftool6.18Upgrade kernel6.18-tools-debuginfoUpgrade kernel-livepatch-6.18.48-107.148Upgrade kernel6.18Upgrade kernel6.18-modules-extra-commonUpgrade kernel6.18-headersUpgrade kernel6.18-modules-extraUpgrade kernel6.18-tools-develUpgrade kernel6.18-toolsUpgrade microvm-kernel6.18 | Sep 30, 2026 | Aug 22, 2026 |
| Redhat_linux | — | No solution exists | Aug 26, 2026 | Aug 22, 2026 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub