CVE-2026-46172

In the Linux kernel, the following vulnerability has been resolved: ipv6: xfrm6: release dst on error in xfrm6_rcv_encap() xfrm6_rcv_encap() performs an IPv6 route lookup when the skb does not already have a dst attached. ip6_route_input_lookup() returns a referenced dst entry even when the lookup resolves to an error route. If dst->error is set, xfrm6_rcv_encap() drops the skb without attaching the dst to the skb and without releasing the reference returned by the lookup. Repeated packets hitting this path therefore leak dst entries. Release the dst before jumping to the drop path.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.1:rc1:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.1:rc2:*:*:*:*:*:*

History

10 Jun 2026, 21:12

Type Values Removed Values Added
References () https://git.kernel.org/stable/c/554c9b090c8ac5b1c5c507f4badf8d5d0c9c6e13 - () https://git.kernel.org/stable/c/554c9b090c8ac5b1c5c507f4badf8d5d0c9c6e13 - Patch
References () https://git.kernel.org/stable/c/6a5eec0a2a0e99ec9743cf8f1c4082178811d90a - () https://git.kernel.org/stable/c/6a5eec0a2a0e99ec9743cf8f1c4082178811d90a - Patch
References () https://git.kernel.org/stable/c/870560015ce6e0d8f841c6a8aba33c44be52c727 - () https://git.kernel.org/stable/c/870560015ce6e0d8f841c6a8aba33c44be52c727 - Patch
References () https://git.kernel.org/stable/c/9d5047782f9bd2829e529df69209bf3232eb561f - () https://git.kernel.org/stable/c/9d5047782f9bd2829e529df69209bf3232eb561f - Patch
References () https://git.kernel.org/stable/c/a0721bcd72641c32b281f227a94505b31cf54117 - () https://git.kernel.org/stable/c/a0721bcd72641c32b281f227a94505b31cf54117 - Patch
References () https://git.kernel.org/stable/c/a20b34f6e854fe6f2aa82528fae7a88759919eb4 - () https://git.kernel.org/stable/c/a20b34f6e854fe6f2aa82528fae7a88759919eb4 - Patch
References () https://git.kernel.org/stable/c/bc0fcb9823cd0894934cf968b525c575833d7078 - () https://git.kernel.org/stable/c/bc0fcb9823cd0894934cf968b525c575833d7078 - Patch
References () https://git.kernel.org/stable/c/c2efc4956981066df2fef1cc77391b523db6d8e4 - () https://git.kernel.org/stable/c/c2efc4956981066df2fef1cc77391b523db6d8e4 - Patch
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CWE NVD-CWE-noinfo
First Time Linux linux Kernel
Linux
CPE cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.1:rc2:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:7.1:rc1:*:*:*:*:*:*

01 Jun 2026, 17:17

Type Values Removed Values Added
References
  • () https://git.kernel.org/stable/c/870560015ce6e0d8f841c6a8aba33c44be52c727 -
  • () https://git.kernel.org/stable/c/a0721bcd72641c32b281f227a94505b31cf54117 -
  • () https://git.kernel.org/stable/c/a20b34f6e854fe6f2aa82528fae7a88759919eb4 -

28 May 2026, 10:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-28 10:16

Updated : 2026-06-10 21:12


NVD link : CVE-2026-46172

Mitre link : CVE-2026-46172

CVE.ORG link : CVE-2026-46172


JSON object : View

Products Affected

linux

  • linux_kernel