SB2026082460 - Time-of-check Time-of-use (TOCTOU) Race Condition in Linux kernel xdp



SB2026082460 - Time-of-check Time-of-use (TOCTOU) Race Condition in Linux kernel xdp

Published: August 24, 2026

Security Bulletin ID SB2026082460
CSH Severity
Low
Patch available
YES
Number of vulnerabilities 1
Exploitation vector Local access
Highest impact Data manipulation

Breakdown by Severity

Low 100%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 1 vulnerability.


1) Time-of-check Time-of-use (TOCTOU) Race Condition (CVE-ID: CVE-2026-74707)

CWE-ID: CWE-367 - Time-of-check Time-of-use (TOCTOU) Race Condition

CVSSv4: 4.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N]


The vulnerability allows a local user to bypass metadata validation.

The vulnerability exists due to improper input validation in xsk_tx_metadata_request() and AF_XDP zero-copy TX metadata handling when processing userspace-supplied TX metadata requests. A local user can modify metadata after an initial validation check to bypass metadata validation.

The issue arises because metadata was validated and then read again later, allowing changed values to be observed after the original check in the zero-copy transmit path.


Remediation

Install update from vendor's website.