CVE-2026-72230
Last modified
CVE-2026-72230 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: batman-adv: frag: free unfragmentable packet The caller of batadv_frag_send_packet() assume that the skb provided to the function are always consumed. But the pre-check for an empty payload or the zero fragment size returned an error without any further actions. A failed pre-check must use the same error handling code as the rest of the function.. EPSS estimates a 0.21% chance of exploitation in the next 30 days.
Description
In the Linux kernel, the following vulnerability has been resolved: batman-adv: frag: free unfragmentable packet The caller of batadv_frag_send_packet() assume that the skb provided to the function are always consumed. But the pre-check for an empty payload or the zero fragment size returned an error without any further actions. A failed pre-check must use the same error handling code as the rest of the function.
Metrics
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux | >= ee75ed88879af88558818a5c6609d85f60ff0df4, < a5155aeeae8ead3c6081f7f197608033e4dcfe75; >= ee75ed88879af88558818a5c6609d85f60ff0df4, < 04ccbed8179e7d4d0906d00939300ddc5b48ce7e; >= ee75ed88879af88558818a5c6609d85f60ff0df4, < 601dff01a03ecced59938cdd69eeb2c66e4158f2; >= ee75ed88879af88558818a5c6609d85f60ff0df4, < 740542f11bf8c86411c429fbd7f84fc6bee80e76; >= ee75ed88879af88558818a5c6609d85f60ff0df4, < 59e1da1ab354d1f2b7bab8d44f846262f990ad9d; >= ee75ed88879af88558818a5c6609d85f60ff0df4, < 8f54162e07d3eea1e4ff21464cf2a815d79b6510; >= ee75ed88879af88558818a5c6609d85f60ff0df4, < 08047838817561cef33ada9774a2a4663d499ecb; >= ee75ed88879af88558818a5c6609d85f60ff0df4, < 6b628425aed49a1c7a4ffc997583840fc582d32b |
| Linux | Linux | 3.13 |
References
Timeline
- Published
- Last Modified
- Status
- Received
Frequently Asked Questions
What is CVE-2026-72230?
How severe is CVE-2026-72230?
How do I fix CVE-2026-72230?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-72225In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2026-72226In the Linux kernel, the following vulnerability has been re…9.8
- CVE-2026-72227In the Linux kernel, the following vulnerability has been re…8.1
- CVE-2026-72228In the Linux kernel, the following vulnerability has been re…
- CVE-2026-72229In the Linux kernel, the following vulnerability has been re…
- CVE-2026-7223A vulnerability was identified in BigSweetPotatoStudio Hyper…7.3
- CVE-2026-72231In the Linux kernel, the following vulnerability has been re…7.5
- CVE-2026-72232In the Linux kernel, the following vulnerability has been re…7.8
- CVE-2026-72233In the Linux kernel, the following vulnerability has been re…8.8
- CVE-2026-72234In the Linux kernel, the following vulnerability has been re…9.8
- CVE-2026-72235In the Linux kernel, the following vulnerability has been re…8.8
- CVE-2026-72236In the Linux kernel, the following vulnerability has been re…
Are you affected by CVE-2026-72230?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
