Количество 5
Количество 5
CVE-2026-92489
(In the Linux kernel, the following vulnerability has been resolved: x ...)
CVE-2026-92489
In the Linux kernel, the following vulnerability has been resolved: xfrm: Fix skb double-free in xfrm_dev_direct_output() A return value other than 1 from local_out() means that the skb has been consumed or its ownership was transferred. xfrm_dev_direct_output() nevertheless frees the skb on this path, causing a double-free when netfilter drops the packet and invalidating any other owner. Return the local_out() result directly, matching the ownership handling in xfrm_output_resume().
CVE-2026-92489
xfrm: Fix skb double-free in xfrm_dev_direct_output()
CVE-2026-92489
In the Linux kernel, the following vulnerability has been resolved: x ...
GHSA-x3mf-vgc4-phvg
In the Linux kernel, the following vulnerability has been resolved: xfrm: Fix skb double-free in xfrm_dev_direct_output() A return value other than 1 from local_out() means that the skb has been consumed or its ownership was transferred. xfrm_dev_direct_output() nevertheless frees the skb on this path, causing a double-free when netfilter drops the packet and invalidating any other owner. Return the local_out() result directly, matching the ownership handling in xfrm_output_resume().
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-92489 (In the Linux kernel, the following vulnerability has been resolved: x ...) | CVSS3: 9.8 | 0% Низкий | 7 дней назад | |
CVE-2026-92489 In the Linux kernel, the following vulnerability has been resolved: xfrm: Fix skb double-free in xfrm_dev_direct_output() A return value other than 1 from local_out() means that the skb has been consumed or its ownership was transferred. xfrm_dev_direct_output() nevertheless frees the skb on this path, causing a double-free when netfilter drops the packet and invalidating any other owner. Return the local_out() result directly, matching the ownership handling in xfrm_output_resume(). | CVSS3: 9.8 | 0% Низкий | 7 дней назад | |
CVE-2026-92489 xfrm: Fix skb double-free in xfrm_dev_direct_output() | CVSS3: 7.1 | 0% Низкий | 6 дней назад | |
CVE-2026-92489 In the Linux kernel, the following vulnerability has been resolved: x ... | CVSS3: 9.8 | 0% Низкий | 7 дней назад | |
GHSA-x3mf-vgc4-phvg In the Linux kernel, the following vulnerability has been resolved: xfrm: Fix skb double-free in xfrm_dev_direct_output() A return value other than 1 from local_out() means that the skb has been consumed or its ownership was transferred. xfrm_dev_direct_output() nevertheless frees the skb on this path, causing a double-free when netfilter drops the packet and invalidating any other owner. Return the local_out() result directly, matching the ownership handling in xfrm_output_resume(). | CVSS3: 9.8 | 0% Низкий | 7 дней назад |
Уязвимостей на страницу