CVE-2026-72041

Source
https://cve.org/CVERecord?id=CVE-2026-72041
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72041.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-72041
Downstream
Published
2026-08-15T05:52:00.721Z
Modified
2026-08-18T03:56:18.725071983Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
espintcp: use sk_msg_free_partial to fix partial send
Details

In the Linux kernel, the following vulnerability has been resolved:

espintcp: use skmsgfree_partial to fix partial send

skmsgfree_partial() ensures consistency of the skmsg at every iteration, without having to manually handle uncharges and offsets. This simplifies the code, and fixes some bugs in skmsg accounting when we don't send the full contents.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72041.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
e27cca96cd68fa2c6814c90f9a1cfd36bb68c593
Fixed
54d73f18f8919735f4d04d6f43374f75756c0180
Fixed
14c0b42c8a2cd9b5361bbff45b52f69c62c6a286
Fixed
a66d45e0ce6d73cd79962d422388e61bfaf0cb50
Fixed
a338ce41bc933d8f74c39d9b3b6f1d8ca53d9714
Fixed
007800408002d871f5699bdb944f985896730b8f

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72041.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.6.0
Fixed
6.6.145
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.97
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72041.json"