CVE-2026-98381

Source
https://cve.org/CVERecord?id=CVE-2026-98381
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98381.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-98381
Downstream
Published
2026-10-09T07:34:21Z
Modified
2026-10-10T02:47:33Z
Summary
veth: manage XDP program pointers during channel resize
Details

In the Linux kernel, the following vulnerability has been resolved:

veth: manage XDP program pointers during channel resize

veth_set_channels() tears down XDP resources for removed RX queues without clearing rq->xdp_prog. If the program is then detached or replaced, those queues keep the old pointer after bpf_prog_put(). A later channel increase can re-enable NAPI and run the freed program.

BUG: unable to handle page fault for address: ffffc90000256048 Oops: Oops: 0000 [#1] SMP KASAN NOPTI RIP: veth_xdp_rcv_skb (include/linux/filter.h:779 include/net/xdp.h:696 drivers/net/veth.c:820) Call Trace: veth_xdp_rcv (drivers/net/veth.c:941) veth_poll (drivers/net/veth.c:986) __napi_poll (net/core/dev.c:7787) net_rx_action (net/core/dev.c:7850 net/core/dev.c:8007) handle_softirqs (kernel/softirq.c:645) Kernel panic - not syncing: Fatal exception in interrupt

Database specific
{
    "cna_assigner": "Linux",
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/98xxx/CVE-2026-98381.json"
}
References

Affected packages

Git / git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git
Events
Introduced
4752eeb3d891c27905a8fdf4d80e899c0efd4ec7
Fixed
7a8e143109ff2736dc79e41dcd55af7ceab7520a
Fixed
1a5c5b9c64ba5f39dba55da6e12561ca56eeb758
Fixed
f0e8dba8c224981e53c792c6b3dbb7604fb2c2c6
Fixed
3c10a5dd0d38f506f671dbb59e9d0ee4c72076f9
Fixed
25bb7c36225220d30f404d7e29d2e052bc5f4b99
Fixed
43f6b647f209591b1e3f726bb16b8dcba6b95908
Fixed
7104a370714346b667712913dc16abf14bbc97ed

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98381.json"

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
5.15.0
Fixed
5.15.222
Type
ECOSYSTEM
Events
Introduced
5.16.0
Fixed
6.1.189
Type
ECOSYSTEM
Events
Introduced
6.2.0
Fixed
6.6.158
Type
ECOSYSTEM
Events
Introduced
6.7.0
Fixed
6.12.112
Type
ECOSYSTEM
Events
Introduced
6.13.0
Fixed
6.18.55
Type
ECOSYSTEM
Events
Introduced
6.19.0
Fixed
7.2.9

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-98381.json"