Improper access control in Linux kernel - CVE-2026-81003
Published: September 12, 2026
Vulnerability details
The vulnerability allows a local user to inject data into existing AF_IUCV sockets and cause a denial of service.
The vulnerability exists due to improper ingress device validation in afiucv_hs_rcv() socket selection when processing a raw ETH_P_AF_IUCV frame received on a network device. A local user can send a crafted raw ETH_P_AF_IUCV frame through its loopback device to inject data into existing AF_IUCV sockets and cause a denial of service.
Exploitation requires CAP_NET_RAW in an unprivileged user and network namespace.