CVE Database
/

CVE-2026-46234

Back to search

CVE-2026-46234

Published: May 28, 2026

Modified: Jun 1, 2026

PUBLISHED

Description

In the Linux kernel, the following vulnerability has been resolved: vsock: fix buffer size clamping order In vsock_update_buffer_size(), the buffer size was being clamped to the maximum first, and then to the minimum. If a user sets a minimum buffer size larger than the maximum, the minimum check overrides the maximum check, inverting the constraint. This breaks the intended socket memory boundaries by allowing the vsk->buffer_size to grow beyond the configured vsk->buffer_max_size. Fix this by checking the minimum first, and then the maximum. This ensures the buffer size never exceeds the buffer_max_size.

VendorProductVersions

Linux

Linux

affected
b9f2b0ffde0c9b666b2b1672eb468b8f805a9b97 - < f6ec135941d2c1c2dbb87b5ce1783f4f6ac6ccca
affected
b9f2b0ffde0c9b666b2b1672eb468b8f805a9b97 - < caf11dfea5233a69298a1c448bbf8d1639c80536
affected
b9f2b0ffde0c9b666b2b1672eb468b8f805a9b97 - < 01ef69785dc3162f588a361ab770b1e312800188
affected
b9f2b0ffde0c9b666b2b1672eb468b8f805a9b97 - < a998a7e250bf976539e05a00ec64a81292afecaa
affected
b9f2b0ffde0c9b666b2b1672eb468b8f805a9b97 - < 310da27932dd0afe7ce7456dfe1f0814c3301f41

+3 more versions

Linux

Linux

affected
5.5
unaffected
0 - < 5.5
unaffected
5.10.258 - <= 5.10.*
unaffected
5.15.209 - <= 5.15.*
unaffected
6.1.175 - <= 6.1.*

+5 more versions

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now