CVE-2026-53363

Description

A flaw was found in the Linux kernel's iptfs component, part of the IPSec framework. The iptfs_consume_frags() function does not correctly propagate a flag indicating shared fragments. This can cause the Encapsulating Security Payload (ESP) to make incorrect security decisions regarding in-place encryption, potentially impacting the integrity or confidentiality of network traffic.

Understanding the Weakness (CWE)

Integrity,Confidentiality,Other

Technical Impact: Modify Application Data; Read Application Data; Alter Execution Logic

Frequently Asked Questions

Want to get errata notifications? Sign up here.