PT-2026-45915 · Unknown · Cilium Ebpf

·

CVE-2026-10722

·

Published

2026-06-03

·

Updated

2026-09-04

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions cilium ebpf versions prior to 0.21.0
Description An integer overflow occurs in the loadRawSpec() function within the btf/btf.go file of the LoadCollectionSpec/LoadCollectionSpecFromReader component. This issue is triggered by the manipulation of the offset argument and can only be executed from a local environment.
Recommendations Apply patch 533dfc82fd228bfadf42ea7180c39de7d9af47fa to versions prior to 0.21.0.

Exploit

Fix

Integer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-89390
AZL-89393
CVE-2026-10722
GHSA-XHGW-QWWF-PG32
GO-2026-6238
OPENSUSE-SU-2026:11153-1
OPENSUSE-SU-2026:11165-1
OPENSUSE-SU-2026:11443-1
OPENSUSE-SU-2026:21265-1
OPENSUSE-SU-2026:21379-1
OPENSUSE-SU-2026:21442-1
OPENSUSE-SU-2026:21574-1
OPENSUSE-SU-2026:21761-1
SUSE-SU-2026:22946-1
SUSE-SU-2026:22954-1
SUSE-SU-2026:23234-1
SUSE-SU-2026:2824-1

Affected Products

Cilium Ebpf