CVE-2026-43383
Published: May 8, 2026
Modified: May 11, 2026
CVSS v3.1
9.4
Description
In the Linux kernel, the following vulnerability has been resolved: net/tcp-md5: Fix MAC comparison to be constant-time To prevent timing attacks, MACs need to be compared in constant time. Use the appropriate helper function for this.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected cfb6eeb4c860592edd123fdea908d23c6ad1c7dc - < 821c8751fdeecdeecabeb11704dd33439c9e4bbcaffected cfb6eeb4c860592edd123fdea908d23c6ad1c7dc - < 345a9530756528d7ca407663d659c3c40e75c3ddaffected cfb6eeb4c860592edd123fdea908d23c6ad1c7dc - < 5d305a95130a8d08b9545e47f1e18d29d59866cbaffected cfb6eeb4c860592edd123fdea908d23c6ad1c7dc - < 02669e2a4d207068edce7e8b5fafd85822018ce6affected cfb6eeb4c860592edd123fdea908d23c6ad1c7dc - < ae3831b44f477de048287493e184fc3ff913b624+2 more versions |
Linux | Linux | affected 2.6.20unaffected 0 - < 2.6.20unaffected 5.10.253 - <= 5.10.*unaffected 6.1.167 - <= 6.1.*unaffected 6.6.130 - <= 6.6.*+4 more versions |
CVSS v3.1 Details
CVSS v3.1 Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now