CVE Database
/

CVE-2026-23083

Back to search

CVE-2026-23083

Published: Feb 4, 2026

Modified: May 11, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: fou: Don't allow 0 for FOU_ATTR_IPPROTO. fou_udp_recv() has the same problem mentioned in the previous patch. If FOU_ATTR_IPPROTO is set to 0, skb is not freed by fou_udp_recv() nor "resubmit"-ted in ip_protocol_deliver_rcu(). Let's forbid 0 for FOU_ATTR_IPPROTO.

VendorProductVersions

Linux

Linux

affected
23461551c00628c3f3fe9cf837bf53cf8f212b63 - < c7498f9bc390479ccfad7c7f2332237ff4945b03
affected
23461551c00628c3f3fe9cf837bf53cf8f212b63 - < 611ef4bd9c73d9e6d87bed57a635ff1fdd8c91ea
affected
23461551c00628c3f3fe9cf837bf53cf8f212b63 - < 6e983789b7588ee59cbf303583546c043bad8e19
affected
23461551c00628c3f3fe9cf837bf53cf8f212b63 - < 1cc98b8887cabb1808d2f4a37cd10a7be7574771
affected
23461551c00628c3f3fe9cf837bf53cf8f212b63 - < b7db31a52c3862a1a32202a273a4c32e7f5f4823

+2 more versions

Linux

Linux

affected
3.18
unaffected
0 - < 3.18
unaffected
5.10.249 - <= 5.10.*
unaffected
5.15.199 - <= 5.15.*
unaffected
6.1.162 - <= 6.1.*

+4 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now