What is CVE-2026-74464?
A vulnerability in the Linux kernel's Open vSwitch module (ovs_ct_execute()) has been identified. If a flow key update fails during connection tracking (ct), the network packet buffer (skb) is not properly freed, leading to a memory leak. Users should apply the latest kernel updates.
Azərbaycanca: Linux kernel-də Open vSwitch-in ovs_ct_execute() funksiyasında boşluq aşkarlanıb. Bağlantı izləmə (connection tracking) zamanı axın açarı yeniləməsi (flow key update) uğursuz olduqda, şəbəkə paket buferi (skb) sərbəst buraxılmır və yaddaş sızmasına (memory leak) səbəb olur. Open vSwitch istifadəçiləri kernel yeniləməsini tətbiq etməlidir.
FAQ1
Under what condition does CVE-2026-74464 cause a memory leak in the Linux kernel?
This vulnerability causes a memory leak when a flow key update fails during connection tracking (ct) in the ovs_ct_execute() function of Open vSwitch, as the network packet buffer (skb) is not properly freed.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.