-

CVE-2026-90106

net: bridge: arp/nd proxy: fix reading neigh ha

In the Linux kernel, the following vulnerability has been resolved:

net: bridge: arp/nd proxy: fix reading neigh ha

Currently neigh ha address is read directly, but that can result in
torn/partial reads if the neigh is being updated. Use neigh_ha_snapshot
to take a stable snapshot of the address.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerLinux
≫
Produkt Linux
Default Statusunaffected
Version 057658cb33fbf4d4309f01fe8845903b1cd07fad
Version < 291c9e137b7c74e8a512cded4845352da4c4adda
Status affected
Version 057658cb33fbf4d4309f01fe8845903b1cd07fad
Version < 57549ab9079122991dfa0f8248ca00e101e8e69b
Status affected
HerstellerLinux
≫
Produkt Linux
Default Statusaffected
Version 4.15
Status affected
Version 0
Version < 4.15
Status unaffected
Version <= 7.2.*
Version 7.2.6
Status unaffected
Version <= *
Version 7.3-rc1
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.19% 0.088
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://git.kernel.org/stable/c/291c9e137b7c74e8a512cded4845352da4c4adda
https://git.kernel.org/stable/c/57549ab9079122991dfa0f8248ca00e101e8e69b