CVE-2026-53266: Linux Kernel
Linux Kernel은 ARP sender 하드웨어 주소가 결합된 ebtables SNAT 대상에서 비선형 소켓 버퍼 조각으로 직접 쓸 수 있는 아웃-of-bounds 쓰기 취약점을 포함합니다. 충격 제품 (s)는 end-of-life (EoL) 및/또는 end-of-service (EoS)일 수 있었습니다. 사용자는 지원되는 버전으로 사용 및/또는 전환을 중단하는 것이 좋습니다.
CISA (English)
Linux Kernel contains an out-of-bounds write vulnerability in the ebtables SNAT target which allows an ARP sender hardware address rewrite to write directly into a nonlinear socket-buffer fragment backed by a splice-imported file page. The impacted product(s) could be end-of-life (EoL) and/or end-of-service (EoS). Users are advised to discontinue use and/or transition to a supported version.
- 공급업체
- Linux
- 제품
- Kernel
- 취약점
- Linux Kernel Out-of-Bounds Write Vulnerability
- 추가일
- 2026. 9. 18.
- CISA 조치 기한(미국 연방기관)
- 2026. 9. 21.
- 랜섬웨어 공격 악용
- 알 수 없음
- 약점(CWE)
- CWE-787
참고 자료
- NVD — CVE-2026-53266
- git.kernel.org
- git.kernel.org
- git.kernel.org
- git.kernel.org
- git.kernel.org
- git.kernel.org
- git.kernel.org
- git.kernel.org
이 사이트는 정보 제공 목적으로 CISA 카탈로그를 요약한 것이며 보안 조언이 아닙니다. 공급업체 안내와 공식 권고를 따르세요.
최종 업데이트: · 카탈로그 버전 2026.10.02