CVE-2026-53074

Source
https://cve.org/CVERecord?id=CVE-2026-53074
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-53074.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-53074
Downstream
Published
2026-06-24T16:30:15.337Z
Modified
2026-07-16T03:32:32.778926122Z
Summary
bpf: reject short IPv4/IPv6 inputs in bpf_prog_test_run_skb
Details

In the Linux kernel, the following vulnerability has been resolved:

bpf: reject short IPv4/IPv6 inputs in bpfprogtestrunskb

bpfprogtestrunskb() calls ethtypetrans() first and then uses skb->protocol to initialize sk family and address fields for the test run.

For IPv4 and IPv6 packets, it may access iphdr(skb) or ipv6hdr(skb) even when the provided test input only contains an Ethernet header.

Reject the input earlier if the Ethernet frame carries IPv4/IPv6 EtherType but the L3 header is too short.

Fold the IPv4/IPv6 header length checks into the existing protocol switch and return -EINVAL before accessing the network headers.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/53xxx/CVE-2026-53074.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
fa5cb548ced61b9d3095f32f8a7e427a248c65ee
Fixed
7254267799d083280c0e53effc101a33add95f7b
Fixed
6a9f38d5ff11e00bc54baab752642978805e81eb
Fixed
e6aa481f21fc7a41ed344767ea25aae9d03fae71
Fixed
0a04db240effd85773f66244645a28cedddb72d2
Fixed
1f882c492d46f90bdb36f4936876c88c28dab21c
Fixed
8042240412de3222d27b31e89d29336961cad9e4
Fixed
6def5fe753cbe5b279ee5fd10327b2611cbddaca
Fixed
12bec2bd4b76d81c5d3996bd14ec1b7f4d983747

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-53074.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.9.0
Fixed
5.10.258
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.209
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.175
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.141
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.91
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.33
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.0.10

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-53074.json"