SB20260812200 - NULL pointer dereference in Linux kernel net bonding driver
Published: August 12, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) NULL pointer dereference (CVE-ID: CVE-2026-68336)
CWE-ID: CWE-476 - NULL Pointer Dereference
CVSSv4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to a NULL pointer dereference in bond_send_validate() in the bonding driver when processing ARP monitor validation with IPv6 disabled. A local user can trigger the vulnerable code path to cause a denial of service.
The issue occurs when the system is booted with the 'ipv6.disable=1' parameter.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/1c975de3343cdef506f2eecc833cc1f14b0401c4
- https://git.kernel.org/stable/c/2a4bad24ac5296b262ad821aa5e08bb265e6b154
- https://git.kernel.org/stable/c/690ce66782778e8c4b1fdd79c0b0890a100e9522
- https://git.kernel.org/stable/c/738039ad21e20ca2c5bbde2f5a4f5ad5fb718038
- https://git.kernel.org/stable/c/992dce02bdabbd9883255ea9b36494e34a7821d7