CVE-2026-80714

Source
https://cve.org/CVERecord?id=CVE-2026-80714
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80714.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-80714
Downstream
Published
2026-08-28T06:53:13.069Z
Modified
2026-08-30T03:48:21.438235649Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
ipvs: do not propagate one-packet flag to synced conns
Details

In the Linux kernel, the following vulnerability has been resolved:

ipvs: do not propagate one-packet flag to synced conns

Synced connections can be created before their destination exists. When the destination is later added, ipvsbind_dest() copies connection flags from the destination into cp->flags.

IPVSCONNFONEPACKET connections are not synced. If a synced connection inherits IPVSCONNFONEPACKET while it is already hashed, expiry can treat it as a one-packet connection and skip unlinking the existing conntab node, leaving stale hash nodes pointing at a freed struct ipvs_conn.

Drop IPVSCONNFONE_PACKET from destination flags when binding synced connections.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/80xxx/CVE-2026-80714.json",
    "cna_assigner": "Linux"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
26ec037f9841e49cc5c615deb8e1e73e5beab2ca
Fixed
06d1d9b56ef8132fbf85006885eb43d9510b8b02
Fixed
acbdc276091b308ca7794acb86e761f8203e2f59
Fixed
300348e3ba1521b003d59825f97e24f9a6859688
Fixed
44af98cc7d5ef8e730488d5df1eecd5deeaa5947
Fixed
4649e6faeecdc2d44bfa6ccbe405eef27e55d816
Fixed
b5ee5b266f833601ac4817f6df0bc496fc376a28
Fixed
e7acfc990c29890c883d0d0ce3f737d003a43b44
Fixed
a63d2dbaeb50a85d4c976b15a36e6b0c7113db5b

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80714.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
2.6.36
Fixed
5.10.265
Type
ECOSYSTEM
Events
Introduced
5.11.0
Fixed
5.15.216
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.183
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.151
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.103
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.44
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.1.8

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-80714.json"