CVE-2026-23459

Description

A flaw was found in the Linux kernel's IP tunnel (ip_tunnel) functionality. Incorrect handling of tunnel statistics, specifically within the iptunnel_xmit_stats() function, could lead to a mismatch in how data is processed. On 32-bit kernel systems, this issue may result in data corruption or system freezes, effectively causing a Denial of Service (DoS).

Understanding the Weakness (CWE)

Integrity,Confidentiality,Other

Technical Impact: Modify Application Data; Read Application Data; Alter Execution Logic

Frequently Asked Questions

Want to get errata notifications? Sign up here.