Skip to content
CVSS 9.8 · CRITICAL

CVE-2026-63924

In the Linux kernel, the following vulnerability has been resolved: ipv6: exthdrs: refresh nh pointer after ipv6_hop_jumbo() ipv6_hop_jumbo() calls pskb_trim_rcsum(), which can change skb pointers. Let's recompute nh pointer to make sure any change won't mess things up.

Ver en NVD

Análisis

A critical vulnerability has been identified in the Linux kernel's IPv6 networking stack. Improper pointer handling when processing jumbo headers could allow for remote memory corruption, potentially leading to system compromise or a kernel-level denial of service.

Roles relevantes

LinuxCloudCyberSecurityDockerBackendKubernetes

Severidad

Puntaje: 9.8(CRITICAL)
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AV: NETWORK
AC: LOW
PR: NONE
UI: NONE
S: UNCHANGED
C: HIGH
I: HIGH
A: HIGH

EPSS

Probabilidad de explotación (próx. 30 días): 0.0021 (0.2%)
Percentil: 11.4%
EPSS: 2026-07-20

Descripción técnica

In the Linux kernel, the following vulnerability has been resolved: ipv6: exthdrs: refresh nh pointer after ipv6_hop_jumbo() ipv6_hop_jumbo() calls pskb_trim_rcsum(), which can change skb pointers. Let's recompute nh pointer to make sure any change won't mess things up.

Publicada: 19/7/2026, 16:17:10
Última modificación: 20/7/2026, 15:16:56

Referencias

InicioEventosBlogRecursosEquipo