What is CVE-2026-64564?
This Linux kernel vulnerability in the SCTP protocol involves incorrectly freeing the ASCONF chunk's own transport during DEL-IP processing, leading to a use-after-free condition. This can result in system crashes or potential privilege escalation. Applying the latest kernel updates is strongly recommended.
Azərbaycanca: Linux kernel-də aşkarlanan bu boşluq SCTP protokolunda ASCONF DEL-IP əmrləri işlənərkən ASCONF çunkunun öz nəqliyyatının (transport) səhvən azad edilməsi ilə bağlıdır. Bu, həmin nəqliyyat resursuna daha sonra edilən müraciətlərdə (use-after-free) sistemin çökməsinə və ya imtiyazların yüksəldilməsinə səbəb ola bilər. Təsirə məruz qalan sistemlərdə kernel yeniləməsinin tətbiqi tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-416
FAQ2
What technical cause leads to the CVE-2026-64564 vulnerability?
The vulnerability arises from a use-after-free condition caused by incorrectly freeing the ASCONF chunk's own transport during SCTP DEL-IP command processing in the Linux kernel.
What are the potential consequences if CVE-2026-64564 is exploited?
Exploitation of this vulnerability can result in system crashes or potential privilege escalation.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.