« Volver al listado

CVE-2026-74559

Estado: RecibidaSin puntuar—

In the Linux kernel, the following vulnerability has been resolved:

xsk: drain continuation descs after overflow in xsk_build_skb()

Fix generic xmit path multi-buffer logic when packets are either too big (count of descriptors exceed MAX_SKB_FRAGS) or an invalid descriptor is included in fragmented packet. Introduce xdp_sock::drain_cont and act upon this flag - when it is set, keep on consuming descriptors from AF_XDP Tx ring and put them directly onto Cq. Previously these descriptors were silently lost and could never be reached again.

CVSS

NVD no ha asignado puntuación CVSS a esta CVE (habitual desde el cambio de política de abril de 2026).

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

⚠ Inferidas por IA a partir de la descripción — NVD aún no ha analizado esta CVE; no son CPE verificados.

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2026-74559",
  "cveTags": [],
  "metrics": {},
  "affected": [
    {
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67",
      "affectedData": [
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "cf24f5a5feeaae34c1a34d1e04f8ac697290427a",
              "lessThan": "ceb00cb87a22c42d20c39336213db2b843ca9e34",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "cf24f5a5feeaae34c1a34d1e04f8ac697290427a",
              "lessThan": "5e94d74e4f3baebaa083288f33b4be7ce0a34982",
              "versionType": "git"
            },
            {
              "status": "affected",
              "version": "cf24f5a5feeaae34c1a34d1e04f8ac697290427a",
              "lessThan": "bd44a6dcd4248883de90f5dad53ae80066e27096",
              "versionType": "git"
            }
          ],
          "programFiles": [
            "include/net/xdp_sock.h",
            "net/xdp/xsk.c"
          ],
          "defaultStatus": "unaffected"
        },
        {
          "repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
          "vendor": "Linux",
          "product": "Linux",
          "versions": [
            {
              "status": "affected",
              "version": "6.6"
            },
            {
              "status": "unaffected",
              "version": "0",
              "lessThan": "6.6",
              "versionType": "semver"
            },
            {
              "status": "unaffected",
              "version": "6.18.44",
              "versionType": "semver",
              "lessThanOrEqual": "6.18.*"
            },
            {
              "status": "unaffected",
              "version": "7.1.8",
              "versionType": "semver",
              "lessThanOrEqual": "7.1.*"
            },
            {
              "status": "unaffected",
              "version": "7.2",
              "versionType": "original_commit_for_fix",
              "lessThanOrEqual": "*"
            }
          ],
          "programFiles": [
            "include/net/xdp_sock.h",
            "net/xdp/xsk.c"
          ],
          "defaultStatus": "affected"
        }
      ]
    }
  ],
  "published": "2026-08-15T13:18:01.390",
  "references": [
    {
      "url": "https://git.kernel.org/stable/c/5e94d74e4f3baebaa083288f33b4be7ce0a34982",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/bd44a6dcd4248883de90f5dad53ae80066e27096",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    },
    {
      "url": "https://git.kernel.org/stable/c/ceb00cb87a22c42d20c39336213db2b843ca9e34",
      "source": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
    }
  ],
  "vulnStatus": "Received",
  "descriptions": [
    {
      "lang": "en",
      "value": "In the Linux kernel, the following vulnerability has been resolved:\n\nxsk: drain continuation descs after overflow in xsk_build_skb()\n\nFix generic xmit path multi-buffer logic when packets are either too big\n(count of descriptors exceed MAX_SKB_FRAGS) or an invalid descriptor is\nincluded in fragmented packet. Introduce xdp_sock::drain_cont and act\nupon this flag - when it is set, keep on consuming descriptors from\nAF_XDP Tx ring and put them directly onto Cq. Previously these\ndescriptors were silently lost and could never be reached again."
    }
  ],
  "lastModified": "2026-08-17T06:19:54.007",
  "sourceIdentifier": "416baaa9-dc9f-4396-8d5f-8c081fb06d67"
}