Improper control of a resource through its lifetime in Linux kernel - CVE-2026-97964
Published: September 28, 2026
Vulnerability details
The vulnerability allows a remote attacker to modify data visible to an AF_PACKET socket.
The vulnerability exists due to failure to ensure a writable skb header in ppp_sync_txmunge() when bridging a received PPP frame to a synchronous tty channel. A remote attacker can send a PPPoE frame that is bridged to a synchronous tty channel to modify data visible to an AF_PACKET socket.
Exploitation requires the frame buffer to be shared with a clone queued to an AF_PACKET socket.