CVE-2026-74263

Source
https://cve.org/CVERecord?id=CVE-2026-74263
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74263.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-74263
Downstream
Published
2026-08-15T05:57:39.660Z
Modified
2026-08-18T03:31:00.447447581Z
Summary
net: wwan: t7xx: check skb_clone in control TX
Details

In the Linux kernel, the following vulnerability has been resolved:

net: wwan: t7xx: check skb_clone in control TX

t7xxportctrltx() clones each skb fragment before passing it to the port transmit path. The clone is used immediately to set cloned->len, so an skbclone() failure results in a NULL pointer dereference.

Check the clone before using it. If previous fragments were already queued, preserve the driver's existing partial-write behavior by returning the number of bytes submitted so far.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/74xxx/CVE-2026-74263.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
36bd28c1cb0dbf48645cfe43159907fb3253b33a
Fixed
7edd4db82f9429591de10be4c904c817f12ba029
Fixed
112490467586146d323cb7230b1d72137e36900c
Fixed
f7aebaee2961bfcb86f282202d3dbd9b69db1a7c
Fixed
4c1b25d85f4c9a0f85f3f8c39988ad266a3f3095
Fixed
05f789fa90d95d5771230e78453cedff2486039d

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74263.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.4.0
Fixed
6.6.145
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.97
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74263.json"