In the Linux kernel, the following vulnerability has been resolved: sctp: purge outqueue on stale COOKIE-ECHO handling sctp_stream_update() is only invoked when the association is moved into COOKIE…
Critical CVSS 9.8
Summary
In the Linux kernel, the following vulnerability has been resolved: sctp: purge outqueue on stale COOKIE-ECHO handling sctp_stream_update() is only invoked when the association is moved into COOKIE_WAIT during association setup/reconfiguration. In this path, the outbound stream scheduler state (stream->out_curr) is expected to be clean, since no user data should have been transmitted yet unless the state machine has already partially progressed. However, a corner case exists in sctp_sf_do_5_…
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/1d4652f677906a64487c13f9ace54b0eb263b5d0 Patch
- https://git.kernel.org/stable/c/2afc9e684dc7fecf73db1edc937ebbc47b4b68dc Patch
- https://git.kernel.org/stable/c/3c0741a441a7df7099d7ca6a64a6a0de09c677c8 Patch
- https://git.kernel.org/stable/c/83ade59e5da365f4bf8bce72c5a38774202b442f Patch
- https://git.kernel.org/stable/c/84b7a319105db2f917ccdcf502bdc866082b1285 Patch
- https://git.kernel.org/stable/c/a6207349e703cfc04756a4d16dec9176135813a5 Patch
- https://git.kernel.org/stable/c/e374b22e9b07b72a25909621464ff74096151bfb Patch
- https://git.kernel.org/stable/c/f46e1d1a758878f0d22c4fbbd1bf42bb7165d1e8 Patch
- https://access.redhat.com/errata/RHSA-2026:59723
- https://access.redhat.com/errata/RHSA-2026:59737
- https://access.redhat.com/errata/RHSA-2026:59821
- https://access.redhat.com/errata/RHSA-2026:67471
- https://access.redhat.com/security/cve/CVE-2026-52924 Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2492095 Issue Tracking
- https://security.access.redhat.com/data/csaf/v2/vex/2026/cve-2026-52924.json Third Party Advisory
Timeline
- nvd_ingest NVD