Vulnerability Bulletins

CVE-2026-45971

   
Affected software LINUX KERNEL
 
In the Linux kernel, the following vulnerability has been resolved:

bpf: Limit bpf program signature size

Practical BPF signatures are significantly smaller than
KMALLOC_MAX_CACHE_SIZE

Allowing larger sizes opens the door for abuse by passing excessive
size values and forcing the kernel into expensive allocation paths (via
kmalloc_large or vmalloc).

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-45971