CVE-2026-80586
Gravedad CVSS v3.1:
CRÍTICA
Tipo:
No Disponible / Otro tipo
Fecha de publicación:
26/08/2026
Última modificación:
27/08/2026
Descripción
*** Pendiente de traducción *** In the Linux kernel, the following vulnerability has been resolved:<br />
<br />
mptcp: options: reset DSS fields in case of unexpected size<br />
<br />
A remote peer could send a malformed DSS with a wrong size, followed by<br />
another DSS or MPC + Data. In this case, the first suboption will be<br />
ignored, but leaving some fields written, which could lead to<br />
inconsistency or access uninitialized data.<br />
<br />
Explicitly reset the fields that could have been modified in case of<br />
unexpected size.
Impacto
Puntuación base 3.x
9.80
Gravedad 3.x
CRÍTICA
Referencias a soluciones, herramientas e información
- https://git.kernel.org/stable/c/15e35fdad7a5576bf3f1c8d688877aeb5d1b506b
- https://git.kernel.org/stable/c/192878df582c51d440bf7b91a15f297f29f2b596
- https://git.kernel.org/stable/c/1fade1b2ac5b1a4948e538fae7313bea57b5ac36
- https://git.kernel.org/stable/c/26dac5c9ffb20812b475fdf253eb04fab99cff3b
- https://git.kernel.org/stable/c/27ed642a4e7e4b5df4b8522c72c457a67e052493
- https://git.kernel.org/stable/c/35772b4981f38ba8059372cde8753e8e477e98ec
- https://git.kernel.org/stable/c/4e80eff5c1c893aca2ac1d202f0b256d2e52ecde
- https://git.kernel.org/stable/c/b1256090816ec46011601e084be580731df58fc7



