CVE-2026-80669

Unknown

Last modified

CVE-2026-80669 is a vulnerability of currently unknown severity. In the Linux kernel, the following vulnerability has been resolved: bpf: Disable xfrm_decode_session hook attachment BPF LSM programs can currently attach to xfrm_decode_session(). That hook may return an error, but security_skb_classify_flow() calls it from a void path and triggers BUG_ON() if an error is returned. Disable BPF attachment to the hook to prevent a BPF LSM program from turning packet classification into a full panic..

Description

In the Linux kernel, the following vulnerability has been resolved: bpf: Disable xfrm_decode_session hook attachment BPF LSM programs can currently attach to xfrm_decode_session(). That hook may return an error, but security_skb_classify_flow() calls it from a void path and triggers BUG_ON() if an error is returned. Disable BPF attachment to the hook to prevent a BPF LSM program from turning packet classification into a full panic.

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
LinuxLinux>= 9e4e01dfd3254c7f04f24b7c6b29596bc12332f3, < aa265d47308775c5501073b08133623bcb5421f9; >= 9e4e01dfd3254c7f04f24b7c6b29596bc12332f3, < 6b44c6660aa1c9b843e450a623ac4a8484919dce; >= 9e4e01dfd3254c7f04f24b7c6b29596bc12332f3, < 4ae780d173ef40d4f7cb76935dc2d55fbf380009; >= 9e4e01dfd3254c7f04f24b7c6b29596bc12332f3, < 49fa1be621dde8f526d36e5791aded8fafda1e9c; >= 9e4e01dfd3254c7f04f24b7c6b29596bc12332f3, < 1bb3b6a5c3c5cc814eae4ff0212fdced36f8bce9; >= 9e4e01dfd3254c7f04f24b7c6b29596bc12332f3, < 12091470c6b4c1c14b2de12dcbae2ada6cb6d20b
LinuxLinux5.7

References

Timeline

Published
Last Modified
Status
Received

Frequently Asked Questions

What is CVE-2026-80669?
In the Linux kernel, the following vulnerability has been resolved: bpf: Disable xfrm_decode_session hook attachment BPF LSM programs can currently attach to xfrm_decode_session(). That hook may return an error, but security_skb_classify_flow() calls it from a void path and triggers BUG_ON() if an error is returned. Disable BPF attachment to the hook to prevent a BPF LSM program from turning packet classification into a full panic.
How severe is CVE-2026-80669?
Severity scoring for CVE-2026-80669 is pending analysis.
How do I fix CVE-2026-80669?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-80669?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST