PT-2026-106650 · Linux · Linux

CVE-2026-98321

·

Published

2026-10-06

·

Updated

2026-10-06

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf nat: unregister and release hooks on error
If nf hook entries insert raw() fails, the NAT hooks get never released, resulting in a memleak.
Postpone setting nat proto net->nat hook ops when the hooks are registered to simplify the error path to decide whether the nat hooks need unwinding.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-98321

Affected Products

Linux