Out-of-bounds write in Linux kernel - CVE-2026-43082
Published: May 7, 2026
Linux kernel
Detailed vulnerability description
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to an out-of-bounds write in the txgbe driver property_entry handling when processing property_entry lists. A local user can trigger allocation of a property_entry list without space for the required null terminator to cause a denial of service.
How to mitigate CVE-2026-43082
Sources
- https://git.kernel.org/stable/c/00e1d650fa4b228ef1faea8e29effe4b4861e6e4
- https://git.kernel.org/stable/c/16eb3c2f86de9a21aefe7a6386607d4cd3947a77
- https://git.kernel.org/stable/c/5a37d228799b0ec2c277459c83c814a59d310bc3
- https://git.kernel.org/stable/c/8eff73e58e1f8fe991522acb863164319a7f7dd3
- https://git.kernel.org/stable/c/92c09262dac565a6b831fd724b81fe4ff76f51b4