-

CVE-2026-74704

net/sched: sch_cake: drop WARN_ON(1) for malformed packets in ACK filter

In the Linux kernel, the following vulnerability has been resolved:

net/sched: sch_cake: drop WARN_ON(1) for malformed packets in ACK filter

The sch_cake ACK filter parses packets to find the TCP header and filter
duplicated ACKs if the flow is backlogged. The parsing code contains a
WARN_ON(1) which can be triggered by a malformed IP header in certain
cases. Depending on the system configuration, this leads either to
either spamming dmesg with warnings, or a panic if panic_on_warn is set.

The code already correctly skips the offending packet in the branch that
triggers the warning, so the WARN_ON itself doesn't really serve any
purpose. So just drop it altogether to avoid the inconvenient side
effects.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
Produkt Linux
Default Statusunaffected
Version 8b7138814f29933898ecd31dfc83e35a30ee69f5
Version < c1693b7844a6c06d31a565e5a494948034dfd235
Status affected
Version 8b7138814f29933898ecd31dfc83e35a30ee69f5
Version < a4b52612004a5639c4bfc30ba93ba414b8326e2a
Status affected
Version 8b7138814f29933898ecd31dfc83e35a30ee69f5
Version < ae1b2f8e21a41e7c7e75511bea0c4ccc59ec1bd3
Status affected
Version 8b7138814f29933898ecd31dfc83e35a30ee69f5
Version < 0c4882bff34558d8d53fb04c3e96da5c327c7dc8
Status affected
Version 8b7138814f29933898ecd31dfc83e35a30ee69f5
Version < 2504a76e5c0694e14e15562730e1339f2d9f9458
Status affected
Version 8b7138814f29933898ecd31dfc83e35a30ee69f5
Version < cd2f1d9fe8a507c2dc86ad326fe221f121c47734
Status affected
Version 8b7138814f29933898ecd31dfc83e35a30ee69f5
Version < a1ae353d8355407c1bea971d1c1af5e7f242bb7d
Status affected
Version 8b7138814f29933898ecd31dfc83e35a30ee69f5
Version < 2a33516f9ef59ad11844d4fc152f889449b5daf3
Status affected
HerstellerLinux
Produkt Linux
Default Statusaffected
Version 4.19
Status affected
Version 0
Version < 4.19
Status unaffected
Version <= 5.10.*
Version 5.10.265
Status unaffected
Version <= 5.15.*
Version 5.15.216
Status unaffected
Version <= 6.1.*
Version 6.1.183
Status unaffected
Version <= 6.6.*
Version 6.6.152
Status unaffected
Version <= 6.12.*
Version 6.12.104
Status unaffected
Version <= 6.18.*
Version 6.18.45
Status unaffected
Version <= 7.1.*
Version 7.1.9
Status unaffected
Version <= *
Version 7.2
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.22% 0.127
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/0c4882bff34558d8d53fb04c3e96da5c327c7dc8
https://git.kernel.org/stable/c/2504a76e5c0694e14e15562730e1339f2d9f9458
https://git.kernel.org/stable/c/2a33516f9ef59ad11844d4fc152f889449b5daf3
https://git.kernel.org/stable/c/a1ae353d8355407c1bea971d1c1af5e7f242bb7d
https://git.kernel.org/stable/c/a4b52612004a5639c4bfc30ba93ba414b8326e2a
https://git.kernel.org/stable/c/ae1b2f8e21a41e7c7e75511bea0c4ccc59ec1bd3
https://git.kernel.org/stable/c/c1693b7844a6c06d31a565e5a494948034dfd235
https://git.kernel.org/stable/c/cd2f1d9fe8a507c2dc86ad326fe221f121c47734