Skip to content
CVSS 9.8 · CRITICAL

CVE-2026-64150

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_inner: release local_lock before re-enabling softirqs Quoting sashiko: In the error path, local_bh_enable() is called before local_unlock_nested_bh().

Ver en NVD

Análisis

A critical vulnerability was found in the Linux kernel netfilter subsystem involving improper locking logic during network packet processing. Given its CVSS 9.8 rating and its location in the core networking stack, this could lead to remote exploitation or system compromise on Linux-based servers.

Roles relevantes

LinuxCyberSecurityCloudDockerKubernetesBackend

Severidad

Puntaje: 9.8(CRITICAL)
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AV: NETWORK
AC: LOW
PR: NONE
UI: NONE
S: UNCHANGED
C: HIGH
I: HIGH
A: HIGH

EPSS

Probabilidad de explotación (próx. 30 días): 0.0017 (0.2%)
Percentil: 6.2%
EPSS: 2026-07-20

Descripción técnica

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_inner: release local_lock before re-enabling softirqs Quoting sashiko: In the error path, local_bh_enable() is called before local_unlock_nested_bh().

Publicada: 19/7/2026, 16:17:56
Última modificación: 20/7/2026, 15:17:12

Referencias

InicioEventosBlogRecursosEquipo