CVE-2026-97522

Source
https://cve.org/CVERecord?id=CVE-2026-97522
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-97522.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-97522
Downstream
Published
2026-09-25T10:21:26Z
Modified
2026-09-26T03:48:29Z
Summary
mptcp: fix bad accounting in __mptcp_subflow_push_pending()
Details

In the Linux kernel, the following vulnerability has been resolved:

mptcp: fix bad accounting in __mptcp_subflow_push_pending()

If __subflow_push_pending() errors out we should avoid updating the copied byte counters, to avoid mismatch push call later on.

Database specific
{
    "cna_assigner":  "Linux",
    "osv_generated_from":  "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/97xxx/CVE-2026-97522.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
0fa1b3783a17d75a4aa1651a18ede041ffca5750
Fixed
9781fa35d9f7a87a83115acd3a88bc9ce35b5407
Fixed
a0a64525f3414268ed4b1945a1dc690aa974dd4f
Fixed
dc054821e639a2e14f1419436612db70b6af45fc
Fixed
f3ef03357396d4b147d8e76c75fb612c2f264ffc

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-97522.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
6.6.0
Fixed
6.12.111
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.53
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-97522.json"