8.8
CVE-2026-68432
- EPSS 0.13%
- Veröffentlicht 12.08.2026 00:17:43
- Zuletzt bearbeitet 19.08.2026 17:20:50
- Erkennungen
vxlan: require CAP_NET_ADMIN in the device netns for changelink
In the Linux kernel, the following vulnerability has been resolved: vxlan: require CAP_NET_ADMIN in the device netns for changelink A tunnel changelink() operates on at most two netns, dev_net(dev) and the sticky underlay netns vxlan->net. They differ once the device is created in or moved to a netns other than the one the request runs in. The rtnl changelink path checks CAP_NET_ADMIN only against dev_net(dev), so a caller privileged there but not in vxlan->net can rewrite a vxlan device whose underlay lives in vxlan->net. vxlan_changelink() validates and applies the new configuration against vxlan->net (vxlan_config_validate(vxlan->net, ...)) and can reopen the underlay socket in that netns, so the same reasoning as the tunnel changelink series applies here. Gate vxlan_changelink() with rtnl_dev_link_net_capable(), at the top of the op before any attribute is parsed, matching ipgre_changelink() and the rest of the "require CAP_NET_ADMIN in the device netns for changelink" series. Found by 0sec automated security-research tooling (https://0sec.ai).
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt
Linux
Default Statusunaffected
Version
8bcdc4f3a20be949df54b67e5ae2734daabb5792
Version <
b95a8743e58f7efed5ddc4cb73829b66f17feab0
Status
affected
Version
8bcdc4f3a20be949df54b67e5ae2734daabb5792
Version <
7465ade989ba84adc2bfa58bad3ca25d249f0f7a
Status
affected
Version
8bcdc4f3a20be949df54b67e5ae2734daabb5792
Version <
0aa580a8bbbed2507b4582a1f0ef581d480d06ed
Status
affected
Version
8bcdc4f3a20be949df54b67e5ae2734daabb5792
Version <
b3793d7dccb192ffff29894d11824db6251acdd5
Status
affected
Version
8bcdc4f3a20be949df54b67e5ae2734daabb5792
Version <
32d10c46bfde3e9b274e9e1bd6399d0ebea8f60f
Status
affected
Version
8bcdc4f3a20be949df54b67e5ae2734daabb5792
Version <
730c7e5fea7f06e0cdf21c547222ec93234fd1d6
Status
affected
Version
8bcdc4f3a20be949df54b67e5ae2734daabb5792
Version <
e8ad0d311e225939a9a6c745d6cc384c7364ec87
Status
affected
Version
8bcdc4f3a20be949df54b67e5ae2734daabb5792
Version <
3a61bd9637f3d929aa846e4eb3d98b48c26fcb0e
Status
affected
HerstellerLinux
≫
Produkt
Linux
Default Statusaffected
Version
4.11
Status
affected
Version
0
Version <
4.11
Status
unaffected
Version <=
5.10.*
Version
5.10.265
Status
unaffected
Version <=
5.15.*
Version
5.15.216
Status
unaffected
Version <=
6.1.*
Version
6.1.183
Status
unaffected
Version <=
6.6.*
Version
6.6.148
Status
unaffected
Version <=
6.12.*
Version
6.12.101
Status
unaffected
Version <=
6.18.*
Version
6.18.42
Status
unaffected
Version <=
7.1.*
Version
7.1.6
Status
unaffected
Version <=
*
Version
7.2
Status
unaffected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.13% | 0.03 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| 416baaa9-dc9f-4396-8d5f-8c081fb06d67 | 8.8 | 2 | 6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
|
https://git.kernel.org/stable/c/32d10c46bfde3e9b274e9e1bd6399d0ebea8f60f
https://git.kernel.org/stable/c/3a61bd9637f3d929aa846e4eb3d98b48c26fcb0e
https://git.kernel.org/stable/c/730c7e5fea7f06e0cdf21c547222ec93234fd1d6
https://git.kernel.org/stable/c/b3793d7dccb192ffff29894d11824db6251acdd5
https://git.kernel.org/stable/c/e8ad0d311e225939a9a6c745d6cc384c7364ec87
https://git.kernel.org/stable/c/0aa580a8bbbed2507b4582a1f0ef581d480d06ed
https://git.kernel.org/stable/c/7465ade989ba84adc2bfa58bad3ca25d249f0f7a
https://git.kernel.org/stable/c/b95a8743e58f7efed5ddc4cb73829b66f17feab0