-

CVE-2026-63969

ipv6: fix possible infinite loop in rt6_fill_node()

In the Linux kernel, the following vulnerability has been resolved:

ipv6: fix possible infinite loop in rt6_fill_node()

Sashiko reported this issue [1]. Apply the same fix as
commit f8d8ce1b515a ("ipv6: fix possible infinite loop in fib6_info_uses_dev()").

Writers holding tb6_lock can list_del_rcu(&rt->fib6_siblings)
without waiting for RCU readers; rt->fib6_siblings.next then still
points into the old ring and this softirq-side walker never reaches
&rt->fib6_siblings, causing a CPU stall. fib6_del_route() always
WRITE_ONCE()s rt->fib6_nsiblings to 0 before list_del_rcu(), so an
inside-loop check is a reliable detach signal.

[1] https://sashiko.dev/#/patchset/20260526020227.4857-1-jiayuan.chen%40linux.dev
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version d0ec61c9f3583b76aebdbb271f5c0d3fcccd48b2
Version < b014a63d2f2c2c767762b548381882dfb1655529
Status affected
Version 52da02521ede55fb86546c3fffd9377b3261b91f
Version < 279853aec9f58d5cd723e6e5617c1c3337b30383
Status affected
Version 34a949e7a0869dfa31a40416d2a56973fae1807b
Version < c65b1f60237daac7c56c2652e064cc566a45dc81
Status affected
Version d9ccb18f83ea2bb654289b6ecf014fd267cc988b
Version < dc36a04621dcc2447dae428709207810b6c06e14
Status affected
Version d9ccb18f83ea2bb654289b6ecf014fd267cc988b
Version < 5e40de719ee76b8d96e2556ce36dbd3bd07bf37d
Status affected
Version d9ccb18f83ea2bb654289b6ecf014fd267cc988b
Version < 9f72412bcf60144f252b0d6205106abf14344abc
Status affected
Version 11edcd026012ac18acee0f1514db3ed1b160fc6f
Status affected
Version 6.1.128
Version < 6.1.176
Status affected
Version 6.6.75
Version < 6.6.143
Status affected
Version 6.12.2
Version < 6.12.93
Status affected
Version 6.11.11
Version < 6.12
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 6.13
Status affected
Version 0
Version < 6.13
Status unaffected
Version <= 6.1.*
Version 6.1.176
Status unaffected
Version <= 6.6.*
Version 6.6.143
Status unaffected
Version <= 6.12.*
Version 6.12.93
Status unaffected
Version <= 6.18.*
Version 6.18.35
Status unaffected
Version <= 7.0.*
Version 7.0.12
Status unaffected
Version <= *
Version 7.1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.21% 0.108
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/b014a63d2f2c2c767762b548381882dfb1655529
https://git.kernel.org/stable/c/279853aec9f58d5cd723e6e5617c1c3337b30383
https://git.kernel.org/stable/c/c65b1f60237daac7c56c2652e064cc566a45dc81
https://git.kernel.org/stable/c/dc36a04621dcc2447dae428709207810b6c06e14
https://git.kernel.org/stable/c/5e40de719ee76b8d96e2556ce36dbd3bd07bf37d
https://git.kernel.org/stable/c/9f72412bcf60144f252b0d6205106abf14344abc