CVE-2026-80637

Source
https://cve.org/CVERecord?id=CVE-2026-80637
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80637.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-80637
Downstream
Published
2026-08-28T06:48:50.836Z
Modified
2026-08-31T03:30:27.307116544Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
netfilter: synproxy: fix unaligned memory access in timestamp adjustment
Details

In the Linux kernel, the following vulnerability has been resolved:

netfilter: synproxy: fix unaligned memory access in timestamp adjustment

Use getunalignedbe32() and putunalignedbe32() to safely read and write the timestamp fields. This prevents performance degradation due to unaligned memory access or even a crash on strict alignment architectures.

This follows the implementation of timestamp parsing in the networking stack at tcpparseoptions() and synproxyparseoptions().

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80637.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
48b1de4c110a7afa4b85862f6c75af817db26fad
Fixed
2b8e7aaa38002d8ee2f48d87b1f392eadd8e98c4
Fixed
5c9c67cf7a3d16051dfb90e98836f530964dfb8e
Fixed
ea3d2caa5bfacf5db5c1cad521ca5d9144edd9a7
Fixed
992c20bc8a4aba220c8b95b467d049289778dad6

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80637.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
3.12.0
Fixed
6.12.97
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.40
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80637.json"