Количество 5
Количество 5
CVE-2026-72231
In the Linux kernel, the following vulnerability has been resolved: batman-adv: tt: avoid request storms during pending request batadv_send_tt_request() allocates a tt_req_node when none exists for the destination originator node. This should prevent that a multiple TT requests are send at the same time to an originator. But if allocation of the send buffer failed, this request must be cleaned up again. But indicator for such a failure is "ret == false". But the actual implementation is checking for "ret == true". The check must be inverted to not loose the information about the TT request directly after it was attempted to be sent out. This should avoid potential request storms.
CVE-2026-72231
A flaw was found in the batman-adv (Better Approach To Mobile Ad-hoc Networking) module of the Linux kernel. An incorrect check during the handling of TT (Topology Table) requests can prevent the proper cleanup of request nodes when send buffer allocation fails. This can lead to a remote attacker causing request storms, potentially resulting in a Denial of Service (DoS) condition.
CVE-2026-72231
In the Linux kernel, the following vulnerability has been resolved: batman-adv: tt: avoid request storms during pending request batadv_send_tt_request() allocates a tt_req_node when none exists for the destination originator node. This should prevent that a multiple TT requests are send at the same time to an originator. But if allocation of the send buffer failed, this request must be cleaned up again. But indicator for such a failure is "ret == false". But the actual implementation is checking for "ret == true". The check must be inverted to not loose the information about the TT request directly after it was attempted to be sent out. This should avoid potential request storms.
CVE-2026-72231
In the Linux kernel, the following vulnerability has been resolved: b ...
GHSA-r9hr-vqwf-9q7r
In the Linux kernel, the following vulnerability has been resolved: batman-adv: tt: avoid request storms during pending request batadv_send_tt_request() allocates a tt_req_node when none exists for the destination originator node. This should prevent that a multiple TT requests are send at the same time to an originator. But if allocation of the send buffer failed, this request must be cleaned up again. But indicator for such a failure is "ret == false". But the actual implementation is checking for "ret == true". The check must be inverted to not loose the information about the TT request directly after it was attempted to be sent out. This should avoid potential request storms.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-72231 In the Linux kernel, the following vulnerability has been resolved: batman-adv: tt: avoid request storms during pending request batadv_send_tt_request() allocates a tt_req_node when none exists for the destination originator node. This should prevent that a multiple TT requests are send at the same time to an originator. But if allocation of the send buffer failed, this request must be cleaned up again. But indicator for such a failure is "ret == false". But the actual implementation is checking for "ret == true". The check must be inverted to not loose the information about the TT request directly after it was attempted to be sent out. This should avoid potential request storms. | CVSS3: 7.5 | 1% Низкий | 13 дней назад | |
CVE-2026-72231 A flaw was found in the batman-adv (Better Approach To Mobile Ad-hoc Networking) module of the Linux kernel. An incorrect check during the handling of TT (Topology Table) requests can prevent the proper cleanup of request nodes when send buffer allocation fails. This can lead to a remote attacker causing request storms, potentially resulting in a Denial of Service (DoS) condition. | CVSS3: 5.5 | 1% Низкий | 15 дней назад | |
CVE-2026-72231 In the Linux kernel, the following vulnerability has been resolved: batman-adv: tt: avoid request storms during pending request batadv_send_tt_request() allocates a tt_req_node when none exists for the destination originator node. This should prevent that a multiple TT requests are send at the same time to an originator. But if allocation of the send buffer failed, this request must be cleaned up again. But indicator for such a failure is "ret == false". But the actual implementation is checking for "ret == true". The check must be inverted to not loose the information about the TT request directly after it was attempted to be sent out. This should avoid potential request storms. | CVSS3: 7.5 | 1% Низкий | 14 дней назад | |
CVE-2026-72231 In the Linux kernel, the following vulnerability has been resolved: b ... | CVSS3: 7.5 | 1% Низкий | 14 дней назад | |
GHSA-r9hr-vqwf-9q7r In the Linux kernel, the following vulnerability has been resolved: batman-adv: tt: avoid request storms during pending request batadv_send_tt_request() allocates a tt_req_node when none exists for the destination originator node. This should prevent that a multiple TT requests are send at the same time to an originator. But if allocation of the send buffer failed, this request must be cleaned up again. But indicator for such a failure is "ret == false". But the actual implementation is checking for "ret == true". The check must be inverted to not loose the information about the TT request directly after it was attempted to be sent out. This should avoid potential request storms. | CVSS3: 7.5 | 1% Низкий | 14 дней назад |
Уязвимостей на страницу