Boletines de Vulnerabilidades

CVE-2026-46145

   
Software afectado LINUX KERNEL
 
In the Linux kernel, the following vulnerability has been resolved:

RDMA/mana: Validate rx_hash_key_len

Sashiko points out that rx_hash_key_len comes from a uAPI structure and is
blindly passed to memcpy, allowing the userspace to trash kernel
memory. Bounds check it so the memcpy cannot overflow.

Link:

https://nvd.nist.gov/vuln/detail/CVE-2026-46145