CVE-2026-72230

Source
https://cve.org/CVERecord?id=CVE-2026-72230
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72230.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-72230
Downstream
Published
2026-08-15T05:54:21.256Z
Modified
2026-08-18T03:30:52.368879002Z
Summary
batman-adv: frag: free unfragmentable packet
Details

In the Linux kernel, the following vulnerability has been resolved:

batman-adv: frag: free unfragmentable packet

The caller of batadvfragsend_packet() assume that the skb provided to the function are always consumed. But the pre-check for an empty payload or the zero fragment size returned an error without any further actions.

A failed pre-check must use the same error handling code as the rest of the function.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72230.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
ee75ed88879af88558818a5c6609d85f60ff0df4
Fixed
a5155aeeae8ead3c6081f7f197608033e4dcfe75
Fixed
04ccbed8179e7d4d0906d00939300ddc5b48ce7e
Fixed
601dff01a03ecced59938cdd69eeb2c66e4158f2
Fixed
740542f11bf8c86411c429fbd7f84fc6bee80e76
Fixed
59e1da1ab354d1f2b7bab8d44f846262f990ad9d
Fixed
8f54162e07d3eea1e4ff21464cf2a815d79b6510
Fixed
08047838817561cef33ada9774a2a4663d499ecb
Fixed
6b628425aed49a1c7a4ffc997583840fc582d32b

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72230.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.13.0
Fixed
5.10.261
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.212
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.178
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.145
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.97
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-72230.json"