SEPTEMBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-63926

HIGH · CVSS 8.4 EPSS 0.18%

Source: NVD + CISA KEV + EPSS · Published 2026-07-19 · Last synced 2026-08-18

CyberRota Analysis

AI-Generated

The vulnerability affects the Linux kernel's BPF (Berkeley Packet Filter) implementation, specifically in the `bpf_msg_push_data()` function, which improperly handles the offset of right fragments when inserting data into a scatterlist entry. This inconsistency can lead to potential data corruption or unexpected behavior in network packet processing. Organizations using Linux-based systems, particularly those leveraging BPF for networking, should prioritize patching this vulnerability to mitigate risks associated with data integrity and system stability.

CVE
CVE-2026-63926
Severity
HIGH
CVSS
8.4
EPSS
0.18%
Linux

Original NVD Description

In the Linux kernel, the following vulnerability has been resolved: bpf: sockmap: fix tail fragment offset in bpf_msg_push_data When bpf_msg_push_data() inserts data in the middle of a scatterlist entry, it splits the original entry into a left fragment and a right fragment. The right fragment offset is page-local, but the code advances it with `start`, which is the message-global insertion point. For inserts into a non-first SG entry, this over-advances the offset and leaves the split layout inconsistent. Advance the right fragment offset by the fragment-local delta, `start - offset`, which matches the length removed from the front of the original entry.