In the Linux kernel, the following vulnerability has been resolved:
crypto: algif_aead - Fix minimum RX size check for decryption
The check for the minimum receive buffer size did not take the
tag size into account during decryption. Fix this by adding the
required extra length.
References
Configurations
Configuration 1 (hide)
|
History
20 May 2026, 23:19
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:linux:linux_kernel:7.0:rc4:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:7.0:rc3:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:7.0:rc6:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:4.14:-:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:7.0:rc5:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:7.0:rc2:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:7.0:rc1:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:7.0:rc7:*:*:*:*:*:* |
|
| CWE | NVD-CWE-noinfo | |
| First Time |
Linux linux Kernel
Linux |
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
| References | () https://git.kernel.org/stable/c/1c76b5675119f694458293a2a81f40731c69bd32 - Patch | |
| References | () https://git.kernel.org/stable/c/3afdc15d6173614d7d834517d9b65e7aa5a08548 - Patch | |
| References | () https://git.kernel.org/stable/c/3d14bd48e3a77091cbce637a12c2ae31b4a1687c - Patch | |
| References | () https://git.kernel.org/stable/c/74a66fdb5282d89e348b00c42cfca3a936946d94 - Patch | |
| References | () https://git.kernel.org/stable/c/78cea133daf721698876e56135049a96d39d610a - Patch | |
| References | () https://git.kernel.org/stable/c/af2fa2fbbced26129813274b8b3f7705f280e174 - Patch | |
| References | () https://git.kernel.org/stable/c/e86ab1e5661386a874fbb8551f0c04b8e9f8ad22 - Patch | |
| References | () https://git.kernel.org/stable/c/fd427dd84f224309afbcc2cb67c7bb770a01265c - Patch |
06 May 2026, 10:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-06 10:16
Updated : 2026-05-20 23:19
NVD link : CVE-2026-43077
Mitre link : CVE-2026-43077
CVE.ORG link : CVE-2026-43077
JSON object : View
Products Affected
linux
- linux_kernel
CWE
