Linux Kernel IPv6 Header Processing Vulnerability in Hop-by-Hop Option Handling

Vulnerability

A vulnerability has been addressed in the Linux kernel's handling of IPv6 hop-by-hop options. The issue arises because the 'ipv6_hop_jumbo' function modifies socket buffer (skb) pointers, which can disrupt the correct processing of network headers. This vulnerability affects the Linux kernel stable tree.

Impact

The vulnerability could lead to improper handling of network packets, potentially causing issues in network communication or packet processing.

Reproduction

The vulnerability can be reproduced by sending IPv6 packets that include hop-by-hop options, specifically those that trigger the 'ipv6_hop_jumbo' function. This will cause the 'nh' (network header) pointer to be incorrectly updated, leading to potential disruptions in how packets are processed.

Remediation

Users can upgrade to the latest version of the Linux kernel stable tree, where this vulnerability has been fixed.

Added: Jul 19, 2026, 7:57 PM
Updated: Jul 19, 2026, 7:57 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
3.1
exploitability
5.7
remediation
0.0
relevance
9.7
threat
4.8
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.