CVE-2026-74432

UnknownEPSS 0.16%

Last modified

CVE-2026-74432 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix leak of released call in recvmsg(MSG_PEEK) Fix rxrpc_recvmsg() to also drop the ref it holds on an already-released call if MSG_PEEK is in force (the function holds a ref on the call irrespective of whether MSG_PEEK is specified or not).. EPSS estimates a 0.16% chance of exploitation in the next 30 days.

Description

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix leak of released call in recvmsg(MSG_PEEK) Fix rxrpc_recvmsg() to also drop the ref it holds on an already-released call if MSG_PEEK is in force (the function holds a ref on the call irrespective of whether MSG_PEEK is specified or not).

Metrics

EPSS Probability
0.16%

5.3th percentile

Probability of exploitation in the next 30 days. Learn more

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 7692bde890061797f3dece0148d7859e85c55778, < 86eff3140c9d4b52bba13d1cba266da933403e51; >= 839fe96c15209dc2255c064bb44b636efe04f032, < e473cd3046a1aaec1e39af5df2042ce7c04d5e74; >= 962fb1f651c2cf2083e0c3ef53ba69e3b96d3fbc, < 2b69b61057eb0b3db9ad754ef0f1436b7af3a9f5; >= 962fb1f651c2cf2083e0c3ef53ba69e3b96d3fbc, < 04c7103dc0923cc6ac95b97aa66bab70da7ace84; >= 962fb1f651c2cf2083e0c3ef53ba69e3b96d3fbc, < 4bdb9e471f5b1ac9cbe4add5de7ff085a0ec303c; 4aed0eeca58e26d752bb08b293b8dc75c6820b23; 6c75a97a32a5fa2060c3dd30207e63b6914b606d; >= 6.6.100, < 6.6.145; >= 6.12.40, < 6.12.97; >= 5.10.266, < 5.11; >= 6.15.8, < 6.16
LinuxLinux6.16

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-74432?
In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix leak of released call in recvmsg(MSG_PEEK) Fix rxrpc_recvmsg() to also drop the ref it holds on an already-released call if MSG_PEEK is in force (the function holds a ref on the call irrespective of whether MSG_PEEK is specified or not).
How severe is CVE-2026-74432?
Severity scoring for CVE-2026-74432 is pending analysis. The EPSS model estimates a 0.16% probability of exploitation in the next 30 days.
How do I fix CVE-2026-74432?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-74432?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST