PT-2026-98827 · Linux · Linux Kernel
CVE-2026-100070
·
Published
2026-09-25
·
Updated
2026-09-28
None
No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
An issue exists in the netfilter module where the
nf nat sip component fails to correctly adjust the offset when Network Address Translation (NAT) changes the packet length. Specifically, when the map addr() function modifies the packet length—occurring when the public NAT IP string differs in length from the internal IP—the coff variable continues to reference the offset of the pre-mangled packet. If the packet shrinks, coff may overshoot the correct position, causing the ct sip parse header uri() function to skip bytes and overlook subsequent Contact headers. This may result in a failure to NAT those headers, potentially leaking internal network details.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linux Kernel