What is CVE-2026-68477?
CVE-2026-68477 in the Linux kernel relates to incorrect IPv6 transport offsets in IP Virtual Server (ipvs), where TCP app code assumed IPv4 headers even after ipvsh argument was provided, potentially causing corruption. Applying kernel updates is recommended for affected systems.
Azərbaycanca: Linux kernel-də IP Virtual Server (ipvs) üçün aşkar edilmiş CVE-2026-68477 zəifliyi, bəzi kod yerlərində səhv IPv6 nəqliyyat ofsetlərinin istifadəsi ilə bağlıdır. TCP tətbiq kodu, ipvsh arqumenti təmin edilsə belə, IPv4 şəbəkə başlığını güman etdiyi üçün potensial pozulmalara səbəb ola bilər. Təsirə məruz qalan sistemlərdə kernel yeniləmələrinin tətbiqi tövsiyə olunur.
FAQ2
Which component of the Linux kernel is affected by CVE-2026-68477?
CVE-2026-68477 affects the IP Virtual Server (ipvs) component in the Linux kernel.
What is the root cause of CVE-2026-68477?
The root cause is the TCP app code incorrectly assuming IPv4 headers even when the ipvsh argument is provided, leading to the use of incorrect IPv6 transport offsets.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.