SB2026081624 - Improper input validation in Linux kernel ipv6 netfilter
Published: August 16, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) Improper input validation (CVE-ID: CVE-2026-72348)
CWE-ID: CWE-20 - Improper input validation
CVSSv4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N]
The vulnerability allows a remote attacker to bypass packet-filtering rules.
The vulnerability exists due to improper input validation in the ip6tables ah, hbh, and rt IPv6 extension header match handlers when processing malformed IPv6 packets with advertised extension header lengths that exceed the available skb data. A remote attacker can send a specially crafted IPv6 packet to bypass packet-filtering rules.
The issue affects handling of malformed IPv6 authentication, hop-by-hop, and routing extension headers.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/2fd89a50a9783eed8ed23866b11c8b3d8779a7a8
- https://git.kernel.org/stable/c/3578b6d92a5b1e603ae6e8c8f5538a709f03aba4
- https://git.kernel.org/stable/c/3d441be2b1c5e98167302fa1c7b61960a067b112
- https://git.kernel.org/stable/c/43ccc20b5a733226417832cf16ef45322e594990
- https://git.kernel.org/stable/c/d5e39e5eb6b30bc4a3bb7aba54c293cf36a806c7
- https://git.kernel.org/stable/c/f16d856b6af5fd0e7cb0b0212f70825b599ef72e
- https://git.kernel.org/stable/c/f775fcf384b06f35b612f78fa5601fee99eb6513
- https://git.kernel.org/stable/c/fc416870100cf16d5b9495199355a679c3a02d48