CVE-2026-53266: Linux Kernel
Linux Kernel zawiera poza -of- Granic pisać podatność w ebtables SNAT target, który pozwala na przepisywanie adresu sprzętowego ARP przepisywać bezpośrednio do nielinearnego fragmentu socket- buffer backed przez spice- importowane strony plików. Wpływ (-e) produktu (-ów) może być (-of-life (EoL) i / lub end- of@-@ service (EOS). Użytkownicy powinni przerwać stosowanie i / lub przejść do obsługiwanej wersji.
CISA (English)
Linux Kernel contains an out-of-bounds write vulnerability in the ebtables SNAT target which allows an ARP sender hardware address rewrite to write directly into a nonlinear socket-buffer fragment backed by a splice-imported file page. The impacted product(s) could be end-of-life (EoL) and/or end-of-service (EoS). Users are advised to discontinue use and/or transition to a supported version.
- Producent
- Linux
- Produkt
- Kernel
- Podatność
- Linux Kernel Out-of-Bounds Write Vulnerability
- Data dodania
- 18 wrz 2026
- Termin CISA (federalne agencje USA)
- 21 wrz 2026
- Znane użycie w kampaniach ransomware
- Nieznane
- Słabość (CWE)
- CWE-787
Odnośniki
- NVD — CVE-2026-53266
- git.kernel.org
- git.kernel.org
- git.kernel.org
- git.kernel.org
- git.kernel.org
- git.kernel.org
- git.kernel.org
- git.kernel.org
Ostatnia aktualizacja: · Wersja katalogu 2026.10.02