SB20260827126 - Use-after-free in Linux kernel net driver
Published: August 27, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) Use-after-free (CVE-ID: CVE-2026-74743)
CWE-ID: CWE-416 - Use After Free
CVSSv4: 9.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
The vulnerability allows a remote attacker to execute arbitrary code.
The vulnerability exists due to a use-after-free in the macvlan network device handling in drivers/net/macvlan.c when processing packets on a macvlan device backed by a lower device that requires additional headroom or tailroom. A remote attacker can send network traffic that triggers insufficient buffer space handling to execute arbitrary code.
The issue can be triggered when the lower device requires extra header or trailer space, such as with macsec, ipsec, wireguard, tunnels, or veth with rx headroom.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/28afc87bd8da0b3348bbbd834c8a89e83712cf5e
- https://git.kernel.org/stable/c/8cd90e850e434577bf6774778657d26d6995e53f
- https://git.kernel.org/stable/c/8f6a05dbac05725e0786701eb04778c5bdbe4eaa
- https://git.kernel.org/stable/c/96fa90b74385b7f2b0d97251dd43d5ee6ca44668
- https://git.kernel.org/stable/c/bc9a00fb78e32bccc39d763bfd13a450705bac5d
- https://git.kernel.org/stable/c/cef51860becd9700217c81732ca1eb1ea6ed6fe1