8.8
/ 10
HIGH
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Description
In the Linux kernel, the following vulnerability has been resolved:
batman-adv: fix integer overflow on buff_pos
Fixing an integer overflow present in batadv_iv_ogm_send_to_if. The size
check is done using the int type in batadv_iv_ogm_aggr_packet whereas the
buff_pos variable uses the s16 type. This could lead to an out-of-bound
read.
batman-adv: fix integer overflow on buff_pos
Fixing an integer overflow present in batadv_iv_ogm_send_to_if. The size
check is done using the int type in batadv_iv_ogm_aggr_packet whereas the
buff_pos variable uses the s16 type. This could lead to an out-of-bound
read.
Basic Information
ID
CVE-2026-46198
Source
Linux
Published
May 28, 2026 at 09:40
Modified
May 30, 2026 at 10:48
Affected Product
Vendor
Linux
Product
Linux
Version
c6c8fea29769d998d94fcec9b9f14d4b52b349d3
Affected Versions
Linux Linux c6c8fea29769d998d94fcec9b9f14d4b52b349d3
Linux Linux c6c8fea29769d998d94fcec9b9f14d4b52b349d3
Linux Linux c6c8fea29769d998d94fcec9b9f14d4b52b349d3
Linux Linux c6c8fea29769d998d94fcec9b9f14d4b52b349d3
Linux Linux c6c8fea29769d998d94fcec9b9f14d4b52b349d3
Linux Linux 2.6.38
Linux Linux c6c8fea29769d998d94fcec9b9f14d4b52b349d3
Linux Linux c6c8fea29769d998d94fcec9b9f14d4b52b349d3
Linux Linux c6c8fea29769d998d94fcec9b9f14d4b52b349d3
Linux Linux c6c8fea29769d998d94fcec9b9f14d4b52b349d3
Linux Linux 2.6.38
References
- git.kernel.org /stable/c/f61499359fa529f0d45a53bf7c573a49eb6322e6
- git.kernel.org /stable/c/974542d1efc48b7e9fe16184e647615cba39969b
- git.kernel.org /stable/c/bf872db54f91ffe70104b98c20068b2d5910e018
- git.kernel.org /stable/c/b252797bfced986d6d92ec2f4cfcca842ce8aa78
- git.kernel.org /stable/c/0799e5943611006b346b8813c7daf7dd5aa26bfd