SB2026090424 - Improper Check for Unusual or Exceptional Conditions in Linux kernel netfilter
Published: September 4, 2026
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 vulnerability.
1) Improper Check for Unusual or Exceptional Conditions (CVE-ID: CVE-2026-80744)
CWE-ID: CWE-754 - Improper Check for Unusual or Exceptional Conditions
CVSSv4: 0 [CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:N/SC:N/SI:N/SA:N]
The vulnerability allows a local user to cause a kernel warning.
The vulnerability exists due to improper handling of expected memory allocation failures in nft_flow_rule_offload_abort() in nf_tables_offload when processing a netfilter transaction rollback. A local user can process a netfilter transaction that encounters an -ENOMEM error to cause a kernel warning.
Exploitation requires memory pressure or fault injection to cause the memory allocation failure.
Remediation
Install update from vendor's website.
References
- https://git.kernel.org/stable/c/09bda4b6df222fd1819e8f188c3a6e90caf546d3
- https://git.kernel.org/stable/c/17c132e18ca5d1641ddbaed8d0e6ecfd1d38fa0b
- https://git.kernel.org/stable/c/2319033c4bf8bdb275a9e4e1f7af9bf8a457ad79
- https://git.kernel.org/stable/c/4a923fe60939a194777bc605036ce2147ab00c9d
- https://git.kernel.org/stable/c/6ee3803c22b72508c5baf1e5aecb21301b714be0
- https://git.kernel.org/stable/c/7ce9851be6f2b019e96e105a9de99715aec6deb4
- https://git.kernel.org/stable/c/c23620a0fa5b1d80399f894c41a9f78bc29d6235
- https://git.kernel.org/stable/c/d02f592064347e0c1e0d84f24941ad338838cc48