Always-Incorrect Control Flow Implementation in Linux kernel - CVE-2026-80612
Published: August 28, 2026
Vulnerability details
The vulnerability allows a local user to cause a denial of service.
The vulnerability exists due to improper handling of skb metadata in lwtunnel encapsulation dispatch helpers when processing forwarded packets that still carry XDP metadata. A local user can send a specially crafted packet through lwtunnel encapsulation to cause a denial of service.
The issue affects RX-originated forwarded packets carrying XDP metadata and can trigger a kernel warning during BPF LWT xmit.