CVE-2026-97523
🟡 Monitoruj
Wyścig między harmonogramem a zmianą stanu w mptcp może prowadzić do błędów w transmisji danych.
CVSS
7.5
EPSS
0.6%
Exploit
none
Vendor
Opis źródłowy (NVD)
In the Linux kernel, the following vulnerability has been resolved: mptcp: close race between scheduler and state change The mptcp scheduler may race with subflow sockets state change: data transmission on the selected socket may fail and a later release could try to use mss_now reset to 0 for a divide operation. Address the issue by explicitly checking for the critical scenario.
brak
Brak patcha
Źródła i daty
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 7.5 |
| CISA KEV (aktywnie wykorzystywane) | Nie |
| FIRST EPSS (prawdopodobieństwo exploita) | 0.6% |
| Opublikowano (NVD) | 2026-09-25 11:17:02 UTC |
| Ostatnia modyfikacja (NVD) | 2026-10-03 11:18:01 UTC |
Referencje
- https://git.kernel.org/stable/c/0a926b5df8efdfbac07e2fb7fafb21849a2ad9c0 (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/42064de57fb83231fcc89663a94885f228a1ee53 (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/4c856f3c151a2f3fa237caa651c44015916ca584 (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/5883ae880f51edc4b1484e787473b865b6159ead (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/8f11430d51ff8365bc51b670bc3002b65ae4c6b7 (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/a09c87abf10a0a7e203137c75b5381aa63d9b31d (416baaa9-dc9f-4396-8d5f-8c081fb06d67)
- https://git.kernel.org/stable/c/d74b2e26b54a7dae1d87c1f19ae0d6db500e5e03 (416baaa9-dc9f-4396-8d5f-8c081fb06d67)