What is CVE-2026-68123?
CVE-2026-68123 is a vulnerability in the Linux kernel related to an Open vSwitch 'GSO userspace truncation underflow'. It occurs when processing GSO (Generic Segmentation Offload) skbs, leading to incorrect truncation in OVS_ACTION_ATTR_TRUNC and potential information disclosure. Affected systems should apply the available kernel patch.
Azərbaycanca: Linux kernel-də aşkarlanan CVE-2026-68123 zəifliyi Open vSwitch-in GSO (Generic Segmentation Offload) paketlərini emal edərkən yaranan `userspace truncation underflow` səhvinə aiddir. Bu, xüsusilə GSO skb-lərin seqmentləşdirilməsi zamanı `OVS_ACTION_ATTR_TRUNC`-da səhv kəsilməyə səbəb olur və potensial məlumat sızmasına yol aça bilər. Təsirə məruz qalan sistemlərdə kernel yeniləməsi tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-200
FAQ2
What is the root cause of CVE-2026-68123?
The vulnerability is caused by a GSO (Generic Segmentation Offload) userspace truncation underflow in Open vSwitch, leading to incorrect truncation in OVS_ACTION_ATTR_TRUNC.
Which Linux kernel component is affected by CVE-2026-68123?
The vulnerability affects the Open vSwitch component in the Linux kernel, specifically when processing GSO (Generic Segmentation Offload) skbs.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.