In the Linux kernel, the following vulnerability has been resolved:
net: pull headers in qdisc_pkt_len_segs_init()
Most ndo_start_xmit() methods expects headers of gso packets
to be already in skb->head.
net/core/tso.c users are particularly at risk, because tso_build_hdr()
does a memcpy(hdr, skb->data, hdr_len);
qdisc_pkt_len_segs_init() already does a dissection of gso packets.
Use pskb_may_pull() instead of skb_header_pointer() to make
sure drivers do not have to reimplement this.
Some malicious packets could be fed, detect them so that we can
drop them sooner with a new SKB_DROP_REASON_SKB_BAD_GSO drop_reason.
References
| Link | Resource |
|---|---|
| https://git.kernel.org/stable/c/7fb4c19670110f052c04e1ec1d2b953b9f4f57e4 | Patch |
| https://git.kernel.org/stable/c/9d4f5c68f5ad4ab425f3ce1500c97c9f9743999a | Patch |
| https://access.redhat.com/security/cve/CVE-2026-53091 | Third Party Advisory |
| https://bugzilla.redhat.com/show_bug.cgi?id=2492270 | Third Party Advisory |
| https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-53091.json | Third Party Advisory |
Configurations
History
23 Jul 2026, 18:34
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* | |
| CWE | NVD-CWE-noinfo | |
| References | () https://git.kernel.org/stable/c/7fb4c19670110f052c04e1ec1d2b953b9f4f57e4 - Patch | |
| References | () https://git.kernel.org/stable/c/9d4f5c68f5ad4ab425f3ce1500c97c9f9743999a - Patch | |
| References | () https://access.redhat.com/security/cve/CVE-2026-53091 - Third Party Advisory | |
| References | () https://bugzilla.redhat.com/show_bug.cgi?id=2492270 - Third Party Advisory | |
| References | () https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-53091.json - Third Party Advisory | |
| First Time |
Linux linux Kernel
Linux |
30 Jun 2026, 03:20
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
| CWE | CWE-131 |
28 Jun 2026, 08:16
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.4 |
24 Jun 2026, 17:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-06-24 17:17
Updated : 2026-07-23 18:34
NVD link : CVE-2026-53091
Mitre link : CVE-2026-53091
CVE.ORG link : CVE-2026-53091
JSON object : View
Products Affected
linux
- linux_kernel
CWE
