In the Linux kernel, the following vulnerability has been resolved:
ip_tunnel: adapt iptunnel_xmit_stats() to NETDEV_PCPU_STAT_DSTATS
Blamed commits forgot that vxlan/geneve use udp_tunnel[6]_xmit_skb() which
call iptunnel_xmit_stats().
iptunnel_xmit_stats() was assuming tunnels were only using
NETDEV_PCPU_STAT_TSTATS.
@syncp offset in pcpu_sw_netstats and pcpu_dstats is different.
32bit kernels would either have corruptions or freezes if the syncp
sequence was overwritten.
This patch also moves pcpu_stat_type closer to dev->{t,d}stats to avoid
a potential cache line miss since iptunnel_xmit_stats() needs to read it.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-04-03 16:16
Updated : 2026-09-07 16:17
NVD link : CVE-2026-23459
Mitre link : CVE-2026-23459
CVE.ORG link : CVE-2026-23459
JSON object : View
Products Affected
linux
- linux_kernel
CWE
