In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo_avx2: don't return non-matching entry on expiry New test case fails unexpectedly when avx2 matching fun…
Critical CVSS 9.4
Summary
In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo_avx2: don't return non-matching entry on expiry New test case fails unexpectedly when avx2 matching functions are used. The test first loads a ranomly generated pipapo set with 'ipv4 . port' key, i.e. nft -f foo. This works. Then, it reloads the set after a flush: (echo flush set t s; cat foo) | nft -f - This is expected to work, because its the same set after all and it was already loaded once.…
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/07de44424bb7f17ef9357e8535df96d9e97c40cb Patch
- https://git.kernel.org/stable/c/0abbc43f71d99baadeeba6fa3fe1c80b676f57ed Patch
- https://git.kernel.org/stable/c/1c43f0dd8691ddf8884793b481ddc7511cf593c3
- https://git.kernel.org/stable/c/3d53f9aafd469ae1ea27051e00f5b96ca1b55d52 Patch
- https://git.kernel.org/stable/c/c7babe2f28b507e17f28e9f753b7caec72d4857f
- https://git.kernel.org/stable/c/d3c0037ffe1273fa1961e779ff6906234d6cf53c Patch
- https://git.kernel.org/stable/c/f8c39983fc9c1a978c82e6f2df7bfba8a8561587
- https://git.kernel.org/stable/c/fa4f1f52528c73989d820f32bfca06bec5afeece Patch
- https://access.redhat.com/errata/RHSA-2026:59723
- https://access.redhat.com/errata/RHSA-2026:62568
- https://access.redhat.com/errata/RHSA-2026:62638
- https://access.redhat.com/errata/RHSA-2026:62639
- https://access.redhat.com/errata/RHSA-2026:62640
- https://access.redhat.com/errata/RHSA-2026:62641
- https://access.redhat.com/errata/RHSA-2026:62642
- https://access.redhat.com/errata/RHSA-2026:63093
- https://access.redhat.com/errata/RHSA-2026:64767
- https://access.redhat.com/errata/RHSA-2026:65712
- https://access.redhat.com/errata/RHSA-2026:66351
- https://access.redhat.com/errata/RHSA-2026:66376
- https://access.redhat.com/security/cve/CVE-2026-43114
- https://bugzilla.redhat.com/show_bug.cgi?id=2466994
- https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-43114.json
Timeline
- nvd_ingest NVD