-

CVE-2026-80996

net: l2tp: do not propagate multicast notification errors

In the Linux kernel, the following vulnerability has been resolved:

net: l2tp: do not propagate multicast notification errors

The tunnel create, tunnel modify, session create, and session modify
netlink handlers send multicast notifications through helpers that can fail
while allocating or encoding a message, or while multicasting it.

For tunnel and session create/modify, a notification is sent after the live
operation has completed. Returning a best-effort notification error as the
command result can therefore report failure for an operation that already
committed and can cause callers to retry and accumulate live objects.

Keep sending notifications for listener visibility, but do not propagate
their best-effort status as the command result. This also keeps the tunnel
modify command consistent with the other notification-only paths.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 33f72e6f0c67f673fd0c63a8182dbd9ffb8cf50b
Version < 0fe037d5eaad938aa3e9143ee071aa237750b42b
Status affected
Version 33f72e6f0c67f673fd0c63a8182dbd9ffb8cf50b
Version < 9c340473f4822bb31b151c19afd17448eda5acd1
Status affected
Version 33f72e6f0c67f673fd0c63a8182dbd9ffb8cf50b
Version < 50c4038f1670bf9a80c6a58ae83d1602decd8481
Status affected
Version 33f72e6f0c67f673fd0c63a8182dbd9ffb8cf50b
Version < af20e269f7459d2ce69887fdf2fad7caf986c865
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 4.0
Status affected
Version 0
Version < 4.0
Status unaffected
Version <= 6.12.*
Version 6.12.109
Status unaffected
Version <= 6.18.*
Version 6.18.50
Status unaffected
Version <= 7.2.*
Version 7.2.4
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.17% 0.063
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/0fe037d5eaad938aa3e9143ee071aa237750b42b
https://git.kernel.org/stable/c/9c340473f4822bb31b151c19afd17448eda5acd1
https://git.kernel.org/stable/c/50c4038f1670bf9a80c6a58ae83d1602decd8481
https://git.kernel.org/stable/c/af20e269f7459d2ce69887fdf2fad7caf986c865