9.4

CVE-2026-43383

net/tcp-md5: Fix MAC comparison to be constant-time

In the Linux kernel, the following vulnerability has been resolved:

net/tcp-md5: Fix MAC comparison to be constant-time

To prevent timing attacks, MACs need to be compared in constant
time.  Use the appropriate helper function for this.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version cfb6eeb4c860592edd123fdea908d23c6ad1c7dc
Version < 821c8751fdeecdeecabeb11704dd33439c9e4bbc
Status affected
Version cfb6eeb4c860592edd123fdea908d23c6ad1c7dc
Version < 345a9530756528d7ca407663d659c3c40e75c3dd
Status affected
Version cfb6eeb4c860592edd123fdea908d23c6ad1c7dc
Version < 5d305a95130a8d08b9545e47f1e18d29d59866cb
Status affected
Version cfb6eeb4c860592edd123fdea908d23c6ad1c7dc
Version < 02669e2a4d207068edce7e8b5fafd85822018ce6
Status affected
Version cfb6eeb4c860592edd123fdea908d23c6ad1c7dc
Version < ae3831b44f477de048287493e184fc3ff913b624
Status affected
Version cfb6eeb4c860592edd123fdea908d23c6ad1c7dc
Version < b502e97e29d791ff7a8051f29a414535739be218
Status affected
Version cfb6eeb4c860592edd123fdea908d23c6ad1c7dc
Version < 46d0d6f50dab706637f4c18a470aac20a21900d3
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 2.6.20
Status affected
Version 0
Version < 2.6.20
Status unaffected
Version <= 5.10.*
Version 5.10.253
Status unaffected
Version <= 6.1.*
Version 6.1.167
Status unaffected
Version <= 6.6.*
Version 6.6.130
Status unaffected
Version <= 6.12.*
Version 6.12.78
Status unaffected
Version <= 6.18.*
Version 6.18.19
Status unaffected
Version <= 6.19.*
Version 6.19.9
Status unaffected
Version <= *
Version 7.0
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.07% 0.213
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
416baaa9-dc9f-4396-8d5f-8c081fb06d67 9.4 3.9 5.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H
Es wurden noch keine Informationen zu CWE veröffentlicht.