← All Advisories

CVE-2026-98251

Last refreshed2026-10-09

Status: UPDATED  |  Advisory ID: CVE-2026-98251

Key Details

CVECVE-2026-98251
CVSS Score / Version7.8 (High) / CVSS v3.1
Updated2026-10-07
CVSS VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS Proseattack vector is local; attack complexity is low; privileges required is low; user interaction is none; scope is unchanged; confidentiality impact is high; integrity impact is high; availability impact is high.
Affected productsLinux Kernel

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
LinuxLinux Kernel
SubsystemsOT Supporting Infrastructure
SectorsAll Sectors

What to Know

In the Linux kernel, the following vulnerability has been resolved:

openvswitch: avoid reallocating confirmed conntrack labels

ovs_ct_get_conn_labels() adds the labels extension when a conntrack

entry does not have one. Confirmed conntracks can be read locklessly,

so adding an extension may reallocate and free the extension block

while another CPU accesses it.

Only add the extension for unconfirmed conntracks. A confirmed

conntrack without labels now fails the caller's label operation instead

of reallocating its extension storage. (NVD)

What to Do

Monitor Linux's web page for any future patch releases.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-98251
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-98251