Out-of-bounds write in Linux kernel - CVE-2026-98105
Published: September 28, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to an out-of-bounds write in the oa_tc6 Ethernet driver when processing received data after data-chunk loss caused by receive buffer overflow errors. A remote attacker can cause oversubscribed traffic to trigger an assertion during skb_put.