Improper input validation in Linux kernel - CVE-2026-72348
Published: August 16, 2026
Vulnerability details
The vulnerability allows a remote attacker to bypass packet-filtering rules.
The vulnerability exists due to improper input validation in the ip6tables ah, hbh, and rt IPv6 extension header match handlers when processing malformed IPv6 packets with advertised extension header lengths that exceed the available skb data. A remote attacker can send a specially crafted IPv6 packet to bypass packet-filtering rules.
The issue affects handling of malformed IPv6 authentication, hop-by-hop, and routing extension headers.
Affected software
Ubuntu
linux (Ubuntu package)
linux-gcp (Ubuntu package)
How to mitigate CVE-2026-72348
linux (Ubuntu package) - addressed in versions 7.0.0-34.34, 7.0.0-34.34.1, 7.0.0-34.34~24.04.1, 7.0.0-1012.12~24.04.1, 7.0.0-1013.13, 7.0.0-1013.13~24.04.1, 7.0.0-1014.14, 7.0.0-1020.20
linux-gcp (Ubuntu package) - addressed in versions 7.0.0-1013.13, 7.0.0-1013.13~24.04.1, 7.0.0-1014.14
External References
- https://git.kernel.org/stable/c/2fd89a50a9783eed8ed23866b11c8b3d8779a7a8
- https://git.kernel.org/stable/c/3578b6d92a5b1e603ae6e8c8f5538a709f03aba4
- https://git.kernel.org/stable/c/3d441be2b1c5e98167302fa1c7b61960a067b112
- https://git.kernel.org/stable/c/43ccc20b5a733226417832cf16ef45322e594990
- https://git.kernel.org/stable/c/d5e39e5eb6b30bc4a3bb7aba54c293cf36a806c7
- https://git.kernel.org/stable/c/f16d856b6af5fd0e7cb0b0212f70825b599ef72e
- https://git.kernel.org/stable/c/f775fcf384b06f35b612f78fa5601fee99eb6513
- https://git.kernel.org/stable/c/fc416870100cf16d5b9495199355a679c3a02d48