Get a Demo

Let's Patch It!

Book a short call with one our specialists, we'll walk you through how Endor Patches work, and ask you a few questions about your environment (like your primary programming languages and repository management). We'll also send you an email right after you fill out the form, feel free to reply with any questions you have in advance!

CVE

CVE-2026-72442

netfilter: flowtable: fix and simplify IP6IP6 tunnel handling
Back to all
CVE

CVE-2026-72442

netfilter: flowtable: fix and simplify IP6IP6 tunnel handling

In the Linux kernel, the following vulnerability has been resolved:

netfilter: flowtable: fix and simplify IP6IP6 tunnel handling

Fix nfflowip6tunnelproto() to use pskbmaypull() instead of

skbheaderpointer() to ensure the outer IPv6 header is in the skb

headroom, which is required for subsequent packet processing. Move

ctx->offset update inside the IPPROTO_IPV6 conditional block since it

should only be adjusted when an IP6IP6 tunnel is actually detected.

Simplify the rx path by removing ipv6skipexthdr() and checking

ip6h->nexthdr directly, as the flowtable fast path only handles simple

IP6IP6 encapsulation without extension headers.

Drop the tunnel encapsulation limit destination option support from the

tx path to match, since the rx path no longer handles extension headers.

Remove the encaplimit parameter from nfflowoffloadipv6_forward(),

nfflowtunnelip6ip6push() and nfflowtunnelv6push(), along with

the ipv6teltxoption struct and related headroom/MTU adjustments.

Package Versions Affected

Package Version
patch Availability
No items found.

Automatically patch vulnerabilities without upgrading

Fix Without Upgrading
Detect compatible fix
Apply safe remediation
Fix with a single pull request

CVSS Version

Severity
Base Score
CVSS Version
Score Vector
C
H
U
9.8
-
3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
C
H
U
0
-
3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
C
H
U
-

Related Resources

No items found.

References

https://git.kernel.org/stable/c/7f8d816a9aa2729d270418f00c9ef5e85bfc1b31, https://git.kernel.org/stable/c/f4c2d8668d85ed125985da663c824a9c25498257, https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/72xxx/CVE-2026-72442.json, https://nvd.nist.gov/vuln/detail/CVE-2026-72442, https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git

Severity

9.8

CVSS Score
0
10

Basic Information

Base CVSS
9.8
EPSS Probability
0.00554%
EPSS Percentile
0.43874%
Introduced Version
d98103575dcdd3a730e0901ab457791a9ac6930c,7.0.0,0
Fix Available
f4c2d8668d85ed125985da663c824a9c25498257,7.1.5

Fix Critical Vulnerabilities Instantly

Secure your app without upgrading.
Fix Without Upgrading