CVE-2026-53363
Description
A flaw was found in the Linux kernel's iptfs component, part of the IPSec framework. The iptfs_consume_frags() function does not correctly propagate a flag indicating shared fragments. This can cause the Encapsulating Security Payload (ESP) to make incorrect security decisions regarding in-place encryption, potentially impacting the integrity or confidentiality of network traffic.
Understanding the Weakness (CWE)
Integrity,Confidentiality,Other
Technical Impact: Modify Application Data; Read Application Data; Alter Execution Logic
Frequently Asked Questions
Not sure what something means? Check out our Security Glossary.
Want to get errata notifications? Sign up here.