CVE-2026-23083

CVSS

No CVSS.

I

n the Linux kernel, the following vulnerability has been resolved: fou: Don't allow 0 for FOU_ATTR_IPPROTO. fou_udp_recv() has the same problem mentioned in the previous patch. If FOU_ATTR_IPPROTO is set to 0, skb is not freed by fou_udp_recv() nor "resubmit"-ted in ip_protocol_deliver_rcu(). Let's forbid 0 for FOU_ATTR_IPPROTO.

Configurations

No configuration.

History

06 Feb 2026, 17:16

Type Values Removed Values Added
References
  • () https://git.kernel.org/stable/c/611ef4bd9c73d9e6d87bed57a635ff1fdd8c91ea -
  • () https://git.kernel.org/stable/c/6e983789b7588ee59cbf303583546c043bad8e19 -
  • () https://git.kernel.org/stable/c/c7498f9bc390479ccfad7c7f2332237ff4945b03 -

04 Feb 2026, 17:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-04 17:16

Updated : 2026-02-06 17:16


NVD link : CVE-2026-23083

Mitre link : CVE-2026-23083

CVE.ORG link : CVE-2026-23083


JSON object : View

Products Affected

No product.

CWE

No CWE.