CVE 9.1 CRITICAL

libceph: prevent potential out-of-bounds reads in process_message_header()_CVE-2026-43406

9.1 / 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H

Description

In the Linux kernel, the following vulnerability has been resolved:

libceph: prevent potential out-of-bounds reads in process_message_header()

If the message frame is (maliciously) corrupted in a way that the
length of the control segment ends up being less than the size of the
message header or a different frame is made to look like a message
frame, out-of-bounds reads may ensue in process_message_header().

Perform an explicit bounds check before decoding the message header.

Basic Information

ID CVE-2026-43406
Source Linux
Published May 8, 2026 at 14:21
Modified May 11, 2026 at 06:34

Affected Product

Vendor Linux
Product Linux
Version cd1a677cad994021b19665ed476aea63f5d54f31
Affected Versions Linux Linux cd1a677cad994021b19665ed476aea63f5d54f31
Linux Linux cd1a677cad994021b19665ed476aea63f5d54f31
Linux Linux cd1a677cad994021b19665ed476aea63f5d54f31
Linux Linux cd1a677cad994021b19665ed476aea63f5d54f31
Linux Linux cd1a677cad994021b19665ed476aea63f5d54f31
Linux Linux cd1a677cad994021b19665ed476aea63f5d54f31
Linux Linux cd1a677cad994021b19665ed476aea63f5d54f31
Linux Linux 5.11

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.