CVE-2026-74467

Source
https://cve.org/CVERecord?id=CVE-2026-74467
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74467.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-74467
Downstream
Published
2026-08-15T12:27:05.635Z
Modified
2026-08-18T03:56:49.196577153Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
s390/qeth: Check CAP_NET_ADMIN for private ioctls
Details

In the Linux kernel, the following vulnerability has been resolved:

s390/qeth: Check CAPNETADMIN for private ioctls

Gate the SIOCDEVPRIVATE ioctl commands SIOCQETHADPSETSNMPCONTROL, SIOCQETHGETCARDTYPE and SIOCQETHQUERYOAT with CAPNETADMIN capable check to ensure unprivileged users cannot invoke them.

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/74xxx/CVE-2026-74467.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
18787eeebd7129ecf4960876d24f349682207783
Fixed
4e48168825818bf4a13c743582227d15f1d30d04
Fixed
b40c74262f7e1e601221cebccdbdb2b392ff9976
Fixed
bd63c7879eaa87f1958f7ee027813356fcd9ff11
Fixed
93a0a846ec59a88e0c402878a15357a5ce430eb4
Fixed
d211028bac1bd0fff0026bfa2a8328e5b78cd0e6

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74467.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.15.0
Fixed
6.6.151
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.103
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.44
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.8

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-74467.json"