In the Linux kernel, the following vulnerability has been resolved:
bpf: Fix tcx/netkit detach permissions when prog fd isn't given
This commit fixes a security issue where BPF_PROG_DETACH on tcx or
netkit devices could be executed by any user when no program fd was
provided, bypassing permission checks. The fix adds a capability
check for CAP_NET_ADMIN or CAP_SYS_ADMIN in this case.
References
Configurations
Configuration 1 (hide)
|
History
24 Jun 2026, 17:11
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | |
| First Time |
Linux linux Kernel
Linux |
|
| CWE | NVD-CWE-noinfo | |
| References | () https://git.kernel.org/stable/c/3f04cc1e5374da4c5e791ae010a06cfea7bacbe6 - Patch | |
| References | () https://git.kernel.org/stable/c/4e0772cded109c238411f2fac36ac39302758b81 - Patch | |
| References | () https://git.kernel.org/stable/c/ae23bc81ddf7c17b663c4ed1b21e35527b0a7131 - Patch |
30 May 2026, 11:17
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.3 |
27 May 2026, 14:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-27 14:17
Updated : 2026-06-24 17:11
NVD link : CVE-2026-45932
Mitre link : CVE-2026-45932
CVE.ORG link : CVE-2026-45932
JSON object : View
Products Affected
linux
- linux_kernel
CWE
