CVE Database
/

CVE-2026-43028

Back to search

CVE-2026-43028

Published: May 1, 2026

Modified: May 11, 2026

PUBLISHED

CVSS v3.1

7.1

HIGH

Description

In the Linux kernel, the following vulnerability has been resolved: netfilter: x_tables: ensure names are nul-terminated Reject names that lack a \0 character before feeding them to functions that expect c-strings. Fixes tag is the most recent commit that needs this change.

VendorProductVersions

Linux

Linux

affected
c38c4597e4bf3e99860eac98211748e1ecb0e139 - < bcac50ea0a29d430eedc5ac87b215393b567baa9
affected
c38c4597e4bf3e99860eac98211748e1ecb0e139 - < ea01c1b219f5a11c66918abaa6f052e5a74041d6
affected
c38c4597e4bf3e99860eac98211748e1ecb0e139 - < aa6cd4a8863391e0a64f62d8922cb0af732a2cf2
affected
c38c4597e4bf3e99860eac98211748e1ecb0e139 - < c2d4a3abb15ca14716c6d8b9ffcbcd7c63626af4
affected
c38c4597e4bf3e99860eac98211748e1ecb0e139 - < 673bbd36cba21d10a10f0932f479df7468e26fbb

+3 more versions

Linux

Linux

affected
4.5
unaffected
0 - < 4.5
unaffected
5.10.253 - <= 5.10.*
unaffected
5.15.203 - <= 5.15.*
unaffected
6.1.168 - <= 6.1.*

+5 more versions

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H

Attack Vector

Local

Attack Complexity

Low

Privileges Required

Low

User Interaction

None

Scope

Unchanged

Confidentiality

High

Integrity

None

Availability

High

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now
CVE-2026-43028 | HIGH (7.1) - Security Vulnerability | QwikSec