CVE 8.2 HIGH

ipv4: icmp: validate reply type before using icmp_pointers_CVE-2026-46037

8.2 / 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:H

Description

In the Linux kernel, the following vulnerability has been resolved:

ipv4: icmp: validate reply type before using icmp_pointers

Extended echo replies use ICMP_EXT_ECHOREPLY as the outbound reply type.
That value is outside the range covered by icmp_pointers[], which only
describes the traditional ICMP types up to NR_ICMP_TYPES.

Avoid consulting icmp_pointers[] for reply types outside that range, and
use array_index_nospec() for the remaining in-range lookup. Normal ICMP
replies keep their existing behavior unchanged.

Basic Information

ID CVE-2026-46037
Source Linux
Published May 27, 2026 at 12:56
Modified May 30, 2026 at 10:46

Affected Product

Vendor Linux
Product Linux
Version d329ea5bd8845f0b196bf41b18b6173340d6e0e4
Affected Versions Linux Linux d329ea5bd8845f0b196bf41b18b6173340d6e0e4
Linux Linux d329ea5bd8845f0b196bf41b18b6173340d6e0e4
Linux Linux d329ea5bd8845f0b196bf41b18b6173340d6e0e4
Linux Linux d329ea5bd8845f0b196bf41b18b6173340d6e0e4
Linux Linux d329ea5bd8845f0b196bf41b18b6173340d6e0e4
Linux Linux 5.13

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.