Boletines de Vulnerabilidades

CVE-2026-46000

   
Software afectado LINUX KERNEL
 
In the Linux kernel, the following vulnerability has been resolved:

rxrpc: Fix conn-level packet handling to unshare RESPONSE packets

The security operations that verify the RESPONSE packets decrypt bits of it
in place - however, the sk_buff may be shared with a packet sniffer, which
would lead to the sniffer seeing an apparently corrupt packet (actually
decrypted).

Fix this by handing a copy of the packet off to the specific security
handler if the packet was cloned.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-46000