In the Linux kernel, the following vulnerability has been resolved:
netfilter: conntrack: remove sprintf usage
Replace it with scnprintf, the buffer sizes are expected to be large enough
to hold the result, no need for snprintf+overflow check.
Increase buffer size in mangle_content_len() while at it.
BUG: KASAN: stack-out-of-bounds in vsnprintf+0xea5/0x1270
Write of size 1 at addr [..]
vsnprintf+0xea5/0x1270
sprintf+0xb1/0xe0
mangle_content_len+0x1ac/0x280
nf_nat_sdp_session+0x1cc/0x240
process_sdp+0x8f8/0xb80
process_invite_request+0x108/0x2b0
process_sip_msg+0x5da/0xf50
sip_help_tcp+0x45e/0x780
nf_confirm+0x34d/0x990
[..]
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
14 Jul 2026, 20:08
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:* cpe:2.3:o:redhat:enterprise_linux:10.0:*:*:*:*:*:*:* |
|
| References | () https://git.kernel.org/stable/c/1c9fb8aeed06790d42cdcd00f6c3ce0b9e926c1e - Patch | |
| References | () https://git.kernel.org/stable/c/2f793ba78470a99f40389b7dc60a81d9f5ad3956 - Patch | |
| References | () https://git.kernel.org/stable/c/6bbf829b4c1b44c941c47dd0d710f1393258f3d5 - Patch | |
| References | () https://git.kernel.org/stable/c/6e7066bdb481a87fe88c4fa563e348c03b2d373d - Patch | |
| References | () https://git.kernel.org/stable/c/8e3be0d12615a173fe260cd42753ca7a001acbf2 - Patch | |
| References | () https://git.kernel.org/stable/c/a8e0a32a23d3f34862af3b4da792ecb3a891a9a3 - Patch | |
| References | () https://git.kernel.org/stable/c/ab64e61c9323fa6de21bd20da1ddb29a0fb65d34 - Patch | |
| References | () https://git.kernel.org/stable/c/c08ff52e44945e6ef4ce0790f49ea761b060c45b - Patch | |
| References | () https://access.redhat.com/security/cve/CVE-2026-53002 - Third Party Advisory | |
| References | () https://bugzilla.redhat.com/show_bug.cgi?id=2492329 - Third Party Advisory | |
| References | () https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-53002.json - Third Party Advisory | |
| First Time |
Linux linux Kernel
Redhat enterprise Linux Redhat Linux |
30 Jun 2026, 03:20
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
| CWE | CWE-787 |
28 Jun 2026, 08:16
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
24 Jun 2026, 17:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-06-24 17:17
Updated : 2026-07-15 01:16
NVD link : CVE-2026-53002
Mitre link : CVE-2026-53002
CVE.ORG link : CVE-2026-53002
JSON object : View
Products Affected
redhat
- enterprise_linux
linux
- linux_kernel
CWE
CWE-787
Out-of-bounds Write
