What is CVE-2026-74579?
A vulnerability in the Linux kernel's netfilter subsystem has been resolved, affecting the nft_payload module. The flaw involves incorrect mask build for partial field offload, specifically for partial IPv6 address matches. Affected systems should apply the latest kernel updates to mitigate this.
Azərbaycanca: Linux kernel-də netfilter alt sistemində nft_payload modulu ilə bağlı boşluq aşkarlanıb. Bu, qismən sahə uyğunluğu (xüsusilə IPv6 ünvanları) üçün offload maskasının səhv qurulmasına səbəb olur. Təsirə məruz qalan sistemlərdə kernel yeniləməsi tətbiq edilməlidir.
FAQ2
Which component of the Linux kernel is affected by CVE-2026-74579?
The vulnerability is related to the nft_payload module in the netfilter subsystem of the Linux kernel.
What causes CVE-2026-74579 and what issue does it create?
The flaw involves an incorrect mask build for partial field offload, specifically for partial IPv6 address matches.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.