CVE-2026-72226 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: tt: prevent TVLV OOB check overflow A TT unicast TVLV contains the number of VLANs stored in it. This number is an u16 and gets multiplied by the size of the struct batadv_tvlv_tt_vlan_data (8 bytes). The size can therefore overflow the u16 used to store the tt_vlan_len. All additional safety checks to prevent out-of-bounds access of the TVLV buffer are invalid due to this overf
In the Linux kernel, the following vulnerability has been resolved:
batman-adv: tt: prevent TVLV OOB check overflow
A TT unicast TVLV contains the number of VLANs stored in it. This number is
an u16 and gets multiplied by the size of the struct
batadv_tvlv_tt_vlan_data (8 bytes). The size can therefore overflow the u16
used to store the tt_vlan_len. All additional safety checks to prevent
out-of-bounds access of the TVLV buffer are invalid due to this overflow.
Using size_t prevents this overflow and ensures that the safety checks
compare against the actual buffer requirements.
- 🔗 git.kernel.org/stable/c/0de12a4c4847f571d82a9cd96bc633ed…
- 🔗 git.kernel.org/stable/c/d6ff4764ff784ede25f5c83a6f5883a7…
- 🔗 git.kernel.org/stable/c/1898273c5dc8148267ef9f97cd2517a2…
- 🔗 git.kernel.org/stable/c/604bd5042fbcd1ab9f7cd98fd847ec01…
- 🔗 git.kernel.org/stable/c/7319c0794f91be2734aac695794e7203…
- 🔗 git.kernel.org/stable/c/3256c05d5a9db34346eaf20f52dddde9…
- 🔗 git.kernel.org/stable/c/6222b443686525cb5a9b6a9cecf23b2e…
- 🔗 git.kernel.org/stable/c/7a581d9aaba8c82bd6177fa36b2588ee…
```Code``` unterstützt. Zero-Day & Vulnerability Intelligence Hub
Echtzeit-Tracking mit EPSS Exploit-Wahrscheinlichkeiten, Angriffsvektor-Decodern und KI-Patch-Anleitungen.
📊 Historien-Charts — Criticals-Trend · Vendors · EPSS-Verteilung
| Tier | 2026-09-22 | 2026-10-06 |
|---|---|---|
| ≥90 % | 491 | 353 |
| ≥50 % | 1475 | 1077 |
| ≥10 % | 0 | 2 |
| <10 % | 0 | 535 |
CVE-2026-72226 | In the Linux kernel, the following vulnerability has been resolved: batman-adv: tt: prevent TVLV OOB check overflow A TT unicast TVLV contains the number of VLANs stored in it. This number is an u16 and gets multiplied by the size of the struct batadv_tvlv_tt_vlan_data (8 bytes). The size can therefore overflow the u16 used to store the tt_vlan_len. All additional safety checks to prevent out-of-bounds access of the TVLV buffer are invalid due to this overf
In the Linux kernel, the following vulnerability has been resolved: batman-adv: tt: prevent TVLV OOB check overflow A TT unicast TVLV contains the number of VLANs stored in it. This number is an u16 and gets multiplied by the size of the
Noch keine Analyse zu CVE-2026-72226
Sei der Erste: Einschätzung, Betroffenheit, Workaround oder PoC — mit Antworten im Thread.