In the Linux kernel, the following vulnerability has been resolved:
RDMA/core: Prefer NLANULSTRING
These attributes are evaluated as c-string (passed to strcmp), but NLA_STRING doesn't check for the presence of a \0 terminator.
Either this needs to switch to nlastrcmp() and needs to adjust printf fmt specifier to not use plain %s, or this needs to use NLANUL_STRING.
As the code has been this way for long time, it seems to me that userspace does include the terminating nul, even tough its not enforced so far, and thus NLANULSTRING use is the simpler solution.
{
"cna_assigner": "Linux",
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/63xxx/CVE-2026-63860.json"
}