CVE-2026-46000

Advisory lineage Upstream: 0 Downstream: 11
Analyzed
Published: 27 May 2026, 12:55
Last modified:14 Jun 2026, 17:47

Vulnerability Summary

Overall Risk (default)
low
22/100
CVSS Score
5.5 MEDIUM
v3.1 (nvd)
EPSS Score
0.16% LOW
0% probability 0.00%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

27 May 2026, 12:55
Published
Vulnerability first disclosed
14 Jun 2026, 17:47
Last Modified
Vulnerability information updated

Description

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix conn-level packet handling to unshare RESPONSE packets The security operations that verify the RESPONSE packets decrypt bits of it in place - however, the sk_buff may be shared with a packet sniffer, which would lead to the sniffer seeing an apparently corrupt packet (actually decrypted). Fix this by handing a copy of the packet off to the specific security handler if the packet was cloned.

CVSS Metrics

  • v3.1MEDIUMScore: 5.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

EPSS Trends

Current EPSS score: 0.16% Percentile: 5%

Affected Systems

  • linuxlinux

    ≥ 17926a79320afa9b95df6b977b40cca6d8713cea, < c0428a22daf69714dc042b67ea759956b74c74e5 | ≥ 17926a79320afa9b95df6b977b40cca6d8713cea, < 98a2046d155f73f6cf5d2c493c5e09b4963e2e12 | ≥ 17926a79320afa9b95df6b977b40cca6d8713cea, < ca71ac2de389b01eecdc48bfafbdf073ec232044 | ≥ 17926a79320afa9b95df6b977b40cca6d8713cea, < d9b93a0f57ca5f6831bfaa34014b6cd705564a00 | ≥ 17926a79320afa9b95df6b977b40cca6d8713cea, < 24481a7f573305706054c59e275371f8d0fe919f | 2.6.22

  • linuxlinux kernel

    ≥ 2.6.22, < 6.6.140 | ≥ 6.7, < 6.12.88 | ≥ 6.13, < 6.18.27 | ≥ 6.19, < 7.0.4

References (5)