HomeDefectsLIN1025-16956
Acknowledged

LIN1025-16956 : Security Advisory - linux - CVE-2026-63926

Created: Aug 1, 2026    Updated: Aug 11, 2026
Found In Version: 10.25.33.2
Severity: Standard
Applicable for: Wind River Linux LTS 25
Component/s: Kernel

Description

In the Linux kernel, the following vulnerability has been resolved:  bpf: sockmap: fix tail fragment offset in bpf_msg_push_data  When bpf_msg_push_data() inserts data in the middle of a scatterlist entry, it splits the original entry into a left fragment and a right fragment.  The right fragment offset is page-local, but the code advances it with `start`, which is the message-global insertion point. For inserts into a non-first SG entry, this over-advances the offset and leaves the split layout inconsistent.  Advance the right fragment offset by the fragment-local delta, `start - offset`, which matches the length removed from the front of the original entry.