CVE-2026-74705

Unknown

Last modified

CVE-2026-74705 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: udp: fix potential use-after-free in tunnel segmentation __skb_udp_tunnel_segment() gets the UDP header before ensuring the tunnel header is in the skb head. If the pull reallocates skb->head, the saved UDP header pointer is no longer valid. Get the UDP header after the pull to avoid a potential use-after-free..

Description

In the Linux kernel, the following vulnerability has been resolved: udp: fix potential use-after-free in tunnel segmentation __skb_udp_tunnel_segment() gets the UDP header before ensuring the tunnel header is in the skb head. If the pull reallocates skb->head, the saved UDP header pointer is no longer valid. Get the UDP header after the pull to avoid a potential use-after-free.

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= dbef491ebe7f3a4fb1b9111878b86a426fd540b7, < 6a733a38b983d8c2e222f13968209010cf44de87; >= dbef491ebe7f3a4fb1b9111878b86a426fd540b7, < 19d89b13a43640b2da2f277ee462d919d988cb6f; >= dbef491ebe7f3a4fb1b9111878b86a426fd540b7, < b3df61bb745eb5201eac22679a2839d4ccbf3442; >= dbef491ebe7f3a4fb1b9111878b86a426fd540b7, < 1ae134c012e10384cdac420b5cc6e0615cde0b55; >= dbef491ebe7f3a4fb1b9111878b86a426fd540b7, < 5161e67c561c4f28a5d9335a6e859b02511de92b; >= dbef491ebe7f3a4fb1b9111878b86a426fd540b7, < 64d322c288577793eedd352b96ef75234ed380fe; >= dbef491ebe7f3a4fb1b9111878b86a426fd540b7, < 588d4a6795d99d080f74ef0b5f391ea8c453ae5d; >= dbef491ebe7f3a4fb1b9111878b86a426fd540b7, < d0f86fb36eb260abd10007b62c9dcc1028e03e61
LinuxLinux4.6

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-74705?
In the Linux kernel, the following vulnerability has been resolved: udp: fix potential use-after-free in tunnel segmentation __skb_udp_tunnel_segment() gets the UDP header before ensuring the tunnel header is in the skb head. If the pull reallocates skb->head, the saved UDP header pointer is no longer valid. Get the UDP header after the pull to avoid a potential use-after-free.
How severe is CVE-2026-74705?
Severity scoring for CVE-2026-74705 is pending analysis.
How do I fix CVE-2026-74705?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-74705?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST