PT-2026-104873 · Azure Linux · Kernel
Published
2026-09-24
·
Updated
2026-09-24
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf conntrack: use get unaligned be32() in tcp sack()
The timestamp-only fast path dereferences the option stream as
*( be32 *)ptr, which assumes 4-byte alignment that the TCP option
stream does not guarantee. Use get unaligned be32() instead, which
reads the value safely and already returns host byte order, so the
htonl() on the comparison constant can be dropped.
This matches the existing get unaligned be32() use later in the same
function.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Kernel