PT-2026-94431 · Linux · Linux Kernel

CVE-2026-90083

·

Published

2026-09-17

·

Updated

2026-09-24

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the act ife component of the network scheduler where the system incorrectly uses skb->dev->hard header len to determine the length of the Ethernet header during encapsulation and decapsulation. On non-Ethernet devices, such as PPP, this length may not match the actual L2 header, leading to incorrect skb push() and skb pull() operations. This can result in a kernel panic via skb under panic when headroom is limited. The issue is particularly evident when mirred redirects a socket buffer (skb) from a non-Ethernet device to an Ethernet one, causing the ingress hook to process a packet without a valid Ethernet header. The vulnerability is triggered within the tcf ife act() function.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

AZL-102546
CVE-2026-90083
OPENSUSE-SU-2026:11880-1

Affected Products

Linux Kernel