PT-2026-94431 · Linux · Linux Kernel
CVE-2026-90083
·
Published
2026-09-17
·
Updated
2026-09-24
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
An issue exists in the
act ife component of the network scheduler where the system incorrectly uses skb->dev->hard header len to determine the length of the Ethernet header during encapsulation and decapsulation. On non-Ethernet devices, such as PPP, this length may not match the actual L2 header, leading to incorrect skb push() and skb pull() operations. This can result in a kernel panic via skb under panic when headroom is limited. The issue is particularly evident when mirred redirects a socket buffer (skb) from a non-Ethernet device to an Ethernet one, causing the ingress hook to process a packet without a valid Ethernet header. The vulnerability is triggered within the tcf ife act() function.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel