CVE-2026-63987

Source
https://cve.org/CVERecord?id=CVE-2026-63987
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-63987.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2026-63987
Downstream
Published
2026-07-19T14:56:08.940Z
Modified
2026-07-22T03:31:54.998797446Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
ethtool: coalesce: cap profile updates at NET_DIM_PARAMS_NUM_PROFILES
Details

In the Linux kernel, the following vulnerability has been resolved:

ethtool: coalesce: cap profile updates at NETDIMPARAMSNUMPROFILES

ethnlupdateprofile() walks the ETHTOOLAPROFILEIRQMODERATION nest list with an index 'i' and writes newprofile[i++] without bounding i. The destination is kmemdup()'d at NETDIMPARAMSNUM_PROFILES entries (5), but the Netlink nest count is entirely user-controlled. Netlink policies do not have support for constraining the number of nested entries (or number of multi-attr entries).

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/63xxx/CVE-2026-63987.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
f750dfe825b904164688adeb147950e0e0c4d262
Fixed
d4c9cc7c47781c6f4fa29d80a1193a8bcd1525bc
Fixed
0c02c190bcd9822477038ff2cee10ea584ac1b1d
Fixed
6205f7166d2dd14a017a5802c81e5bd1421a8635
Fixed
7281b096b072f6c6e30420e3467d738f2e4c4b57

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-63987.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.11.0
Fixed
6.12.93
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.35
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.0.12

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-63987.json"