In the Linux kernel, the following vulnerability has been resolved:
rnbd-srv: Zero the rsp buffer before using it
Before using the data buffer to send back the response message, zero it
completely. This prevents any stray bytes to be picked up by the client
side when there the message is exchanged between different protocol
versions.
References
Configurations
Configuration 1 (hide)
|
History
11 May 2026, 20:56
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://git.kernel.org/stable/c/30868a6a5238849d554295aff3ce61d242d7fad8 - Patch | |
| References | () https://git.kernel.org/stable/c/69d26698e4fd44935510553809007151b2fe4db5 - Patch | |
| References | () https://git.kernel.org/stable/c/7aac0a30dcf41cdb510526740d9a2ab1520c5d98 - Patch | |
| References | () https://git.kernel.org/stable/c/852475278ca5e96e0c0275950e1a84203e602b33 - Patch | |
| References | () https://git.kernel.org/stable/c/b646e54d23b9b592d612a2036aab14e0f6c14206 - Patch | |
| References | () https://git.kernel.org/stable/c/c94ede3c436dfbd9cedd9cb69f604f6fc901b6a2 - Patch | |
| References | () https://git.kernel.org/stable/c/e2cacec7d4291300a282feb3af8eba57b93b15aa - Patch | |
| References | () https://git.kernel.org/stable/c/e4272754063d52c9ad0169865add8816ba696471 - Patch | |
| CWE | NVD-CWE-noinfo | |
| CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | |
| First Time |
Linux linux Kernel
Linux |
08 May 2026, 13:16
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
06 May 2026, 12:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-06 12:16
Updated : 2026-05-11 20:56
NVD link : CVE-2026-43184
Mitre link : CVE-2026-43184
CVE.ORG link : CVE-2026-43184
JSON object : View
Products Affected
linux
- linux_kernel
CWE
