In the Linux kernel, the following vulnerability has been resolved:
neigh: let neigh_xmit take skb ownership
neigh_xmit always releases the skb, except when no neighbour table is
found. But even the first added user of neigh_xmit (mpls) relied on
neigh_xmit to release the skb (or queue it for tx).
sashiko reported:
If neigh_xmit() is called with an uninitialized neighbor table (for
example, NEIGH_ND_TABLE when IPv6 is disabled), it returns -EAFNOSUPPORT
and bypasses its internal out_kfree_skb error path. Because the return
value of neigh_xmit() is ignored here, does this leak the SKB?
Assume full ownership and remove the last code path that doesn't
xmit or free skb.
References
Configurations
Configuration 1 (hide)
|
History
14 Jul 2026, 16:51
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://git.kernel.org/stable/c/0084712e0bee204b284510cdb63182fd5a30c2b7 - Patch | |
| References | () https://git.kernel.org/stable/c/4438113be604ee67a7bf4f81da6e1cca41332ce4 - Patch | |
| References | () https://git.kernel.org/stable/c/445e45a2c3a078316a62d2d331a570cf34ef5079 - Patch | |
| References | () https://git.kernel.org/stable/c/63063ba60d2dc334e34f1e3f9271d7f3f6f30307 - Patch | |
| References | () https://git.kernel.org/stable/c/8a89054a1ec0767aec25ed2bbac933da6ba3cf5a - Patch | |
| References | () https://git.kernel.org/stable/c/9247d59ca15bf60a57dca08103f055d8a4340877 - Patch | |
| CWE | CWE-401 | |
| CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:7.1:rc1:*:*:*:*:*:* |
|
| First Time |
Linux linux Kernel
Linux |
28 Jun 2026, 08:16
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
24 Jun 2026, 17:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-06-24 17:17
Updated : 2026-07-14 16:51
NVD link : CVE-2026-52981
Mitre link : CVE-2026-52981
CVE.ORG link : CVE-2026-52981
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-401
Missing Release of Memory after Effective Lifetime
