CVE-2026-64579
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
05/08/2026
Last modified:
19/08/2026
Description
In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
xfrm: policy: preallocate inexact bins before xfrm_hash_rebuild reinsert<br />
<br />
xfrm_hash_rebuild()&#39;s first loop preallocates the bins/chains the reinsert<br />
loop needs, so the reinsert (after hlist_del_rcu()) cannot allocate or<br />
fail. But its guard is inverted: it skips policies with prefixlen
Impact
References to Advisories, Solutions, and Tools
- https://git.kernel.org/stable/c/1cdeed9df1306f1a277e715600772640d63defa9
- https://git.kernel.org/stable/c/43a4d510523779891cf8eca7ffb4a086b0b5d8bf
- https://git.kernel.org/stable/c/6aa3796d18a9fda953ad76a62b57bf6c145cb9ef
- https://git.kernel.org/stable/c/7acc5ed2f33608a3d83b64f50a5766843b6e2485
- https://git.kernel.org/stable/c/94c00391a5117530188334f740ce26d3f1256190
- https://git.kernel.org/stable/c/d9d9cc21cc90014724a14c447e3d587be9447107
- https://git.kernel.org/stable/c/e48f4c3e3df35b34be719d72d737bbeaca77cf0c
- https://git.kernel.org/stable/c/f38f8cce2f7e79775b3db7e8a5eacda04ac908e4


