THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-46323 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: net: gro: don't merge zcopy skbs skb_gro_receive() can currently copy frags between the source and GRO skb, without checking the zerocopy status, and in particular the SKBFL_MANAGED_FRAG_REFS flag. When SKBFL_

[NVD] CVE-2026-46323 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: net: gro: don't merge zcopy skbs skb_gro_receive() can currently copy frags between the source and GRO skb, without checking the zerocopy status, and in particular the SKBFL_MANAGED_FRAG_REFS flag. When SKBFL_

lownvdPublished 2026-06-09

CVE-2026-46323 CVSS: 7.8 HIGH Published: 2026-06-09T13:16:37.753

In the Linux kernel, the following vulnerability has been resolved:

net: gro: don't merge zcopy skbs

skb_gro_receive() can currently copy frags between the source and GRO skb, without checking the zerocopy status, and in particular the SKBFL_MANAGED_FRAG_REFS flag.

When SKBFL_MANAGED_FRAG_REFS is set, the skb doesn't hold a refer

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-46323