CVE-2026-46234
Published: May 28, 2026
Modified: Jun 1, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: vsock: fix buffer size clamping order In vsock_update_buffer_size(), the buffer size was being clamped to the maximum first, and then to the minimum. If a user sets a minimum buffer size larger than the maximum, the minimum check overrides the maximum check, inverting the constraint. This breaks the intended socket memory boundaries by allowing the vsk->buffer_size to grow beyond the configured vsk->buffer_max_size. Fix this by checking the minimum first, and then the maximum. This ensures the buffer size never exceeds the buffer_max_size.
| Vendor | Product | Versions |
|---|---|---|
Linux | Linux | affected b9f2b0ffde0c9b666b2b1672eb468b8f805a9b97 - < f6ec135941d2c1c2dbb87b5ce1783f4f6ac6cccaaffected b9f2b0ffde0c9b666b2b1672eb468b8f805a9b97 - < caf11dfea5233a69298a1c448bbf8d1639c80536affected b9f2b0ffde0c9b666b2b1672eb468b8f805a9b97 - < 01ef69785dc3162f588a361ab770b1e312800188affected b9f2b0ffde0c9b666b2b1672eb468b8f805a9b97 - < a998a7e250bf976539e05a00ec64a81292afecaaaffected b9f2b0ffde0c9b666b2b1672eb468b8f805a9b97 - < 310da27932dd0afe7ce7456dfe1f0814c3301f41+3 more versions |
Linux | Linux | affected 5.5unaffected 0 - < 5.5unaffected 5.10.258 - <= 5.10.*unaffected 5.15.209 - <= 5.15.*unaffected 6.1.175 - <= 6.1.*+5 more versions |
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now