CVE-2026-46198

Source
https://cve.org/CVERecord?id=CVE-2026-46198
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-46198.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-46198
Downstream
Related
Published
2026-05-28T09:40:14.558Z
Modified
2026-07-21T09:53:04.074091443Z
Severity
  • 8.8 (High) CVSS_V3 - CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
batman-adv: fix integer overflow on buff_pos
Details

In the Linux kernel, the following vulnerability has been resolved:

batman-adv: fix integer overflow on buff_pos

Fixing an integer overflow present in batadvivogmsendtoif. The size check is done using the int type in batadvivogmaggrpacket whereas the buffpos variable uses the s16 type. This could lead to an out-of-bound read.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/46xxx/CVE-2026-46198.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
c6c8fea29769d998d94fcec9b9f14d4b52b349d3
Fixed
867cd090760e8f5cd206f387b47ff9c56fac04e9
Fixed
10bb1f366d884d506c38a947b43026a75d1afe9a
Fixed
96c9c0ed9a9579a9085765aceaa4556a6666eb82
Fixed
f61499359fa529f0d45a53bf7c573a49eb6322e6
Fixed
974542d1efc48b7e9fe16184e647615cba39969b
Fixed
bf872db54f91ffe70104b98c20068b2d5910e018
Fixed
b252797bfced986d6d92ec2f4cfcca842ce8aa78
Fixed
0799e5943611006b346b8813c7daf7dd5aa26bfd

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-46198.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
2.6.38
Fixed
5.10.258
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.209
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.175
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.140
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.90
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.32
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.0.9

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-46198.json"