What is CVE-2026-68119?
A vulnerability in the Linux kernel was resolved where the TCP header length for standalone TCP-AO responses was incorrectly padded. This flaw affects the `tcp_v4_send_ack()` and `tcp_v6_send_response()` functions, potentially disrupting network authentication mechanisms. Applying the Linux kernel update is recommended to mitigate this issue.
Azərbaycanca: Linux nüvəsində TCP-AO (Authentication Option) ilə göndərilən ayrıca cavab paketlərində başlıq uzunluğunun düzgün hesablanmaması aşkar edilib. Bu zəiflik, xüsusilə `tcp_v4_send_ack()` və `tcp_v6_send_response()` funksiyalarını təsir edərək şəbəkə autentifikasiya mexanizmlərinin pozulmasına səbəb ola bilər. Zəifliyi aradan qaldırmaq üçün Linux kernel yeniləməsini tətbiq etmək tövsiyə olunur.
FAQ1
Which specific functions in the Linux kernel are affected by CVE-2026-68119?
This vulnerability affects the `tcp_v4_send_ack()` and `tcp_v6_send_response()` functions, where the TCP header length for standalone TCP-AO response packets is incorrectly padded.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.