CVE-2026-80669
Last modified
CVE-2026-80669 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: bpf: Disable xfrm_decode_session hook attachment BPF LSM programs can currently attach to xfrm_decode_session(). That hook may return an error, but security_skb_classify_flow() calls it from a void path and triggers BUG_ON() if an error is returned. Disable BPF attachment to the hook to prevent a BPF LSM program from turning packet classification into a full panic..
Description
In the Linux kernel, the following vulnerability has been resolved: bpf: Disable xfrm_decode_session hook attachment BPF LSM programs can currently attach to xfrm_decode_session(). That hook may return an error, but security_skb_classify_flow() calls it from a void path and triggers BUG_ON() if an error is returned. Disable BPF attachment to the hook to prevent a BPF LSM program from turning packet classification into a full panic.
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux | >= 9e4e01dfd3254c7f04f24b7c6b29596bc12332f3, < aa265d47308775c5501073b08133623bcb5421f9; >= 9e4e01dfd3254c7f04f24b7c6b29596bc12332f3, < 6b44c6660aa1c9b843e450a623ac4a8484919dce; >= 9e4e01dfd3254c7f04f24b7c6b29596bc12332f3, < 4ae780d173ef40d4f7cb76935dc2d55fbf380009; >= 9e4e01dfd3254c7f04f24b7c6b29596bc12332f3, < 49fa1be621dde8f526d36e5791aded8fafda1e9c; >= 9e4e01dfd3254c7f04f24b7c6b29596bc12332f3, < 1bb3b6a5c3c5cc814eae4ff0212fdced36f8bce9; >= 9e4e01dfd3254c7f04f24b7c6b29596bc12332f3, < 12091470c6b4c1c14b2de12dcbae2ada6cb6d20b |
| Linux | Linux | 5.7 |
References
Timeline
- Published
- Last Modified
- Status
- Received
Frequently Asked Questions
What is CVE-2026-80669?
How severe is CVE-2026-80669?
How do I fix CVE-2026-80669?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-80663In the Linux kernel, the following vulnerability has been re…7.1
- CVE-2026-80664In the Linux kernel, the following vulnerability has been re…7.3
- CVE-2026-80665In the Linux kernel, the following vulnerability has been re…7.1
- CVE-2026-80666In the Linux kernel, the following vulnerability has been re…
- CVE-2026-80667In the Linux kernel, the following vulnerability has been re…
- CVE-2026-80668In the Linux kernel, the following vulnerability has been re…9.8
- CVE-2026-80670In the Linux kernel, the following vulnerability has been re…9.1
- CVE-2026-80671In the Linux kernel, the following vulnerability has been re…9.3
- CVE-2026-80672In the Linux kernel, the following vulnerability has been re…8.8
- CVE-2026-80673In the Linux kernel, the following vulnerability has been re…9.8
- CVE-2026-80674In the Linux kernel, the following vulnerability has been re…9.8
- CVE-2026-80675In the Linux kernel, the following vulnerability has been re…7.1
Are you affected by CVE-2026-80669?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
