CVE-2026-43208Disclosure(linux / linux_kernel)

LOWCVSS 9.8 · CRITICAL

Signal is active with 5 mentions in latest observed window

Immediate actions

  • Patch linux linux_kernel systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

In the Linux kernel, the following vulnerability has been resolved: net: do not pass flow_id to set_rps_cpu() Blamed commit made the assumption that the RPS table for each receive queue would have the same size, and that it would not change. Compute flow_id in set_rps_cpu(), do not assume we can use the value computed by get_rps_cpu(). Otherwise we risk out-of-bound access and/or crashes.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-787

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • linux_kernel

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 3 classified signals
  • General: 1 classified signal
  • 5 total mentions across 1 day

Affected systems

Vendors
Products
linux_kernel

1 version affected across 1 product

Deep dive

Activity timeline5 mentions / 1d
01345Mentions · 2026-05-14: 5Patch / Workaround · 2026-05-14: 1Technical Details · 2026-05-14: 405-14
Signal classification3 categories
Disclosure
360.0%
General
120.0%
Patch
120.0%
Referenced assets1 URL
By indicator
Full discourse5 posts
  • Lyrie.ai@lyrie_ai
    Disclosure

    CRITICAL: CVE-2026-43208 (CVSS 9.8) — multiple products. CVE: CVE-2026-43208 CVSS: 9.8 (3.1) — CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Severity: CRITICAL Status: Critical advisory

    Post summary

    The message announces the discovery of CVE-2026-43208, a critical vulnerability with a CVSS 9.8 score, and labels it a critical advisory for multiple products.

    1001038
    210 followersView on X
  • Lyrie.ai@lyrie_ai
    Disclosure

    Compute flowid in setrpscpu(), do not assume we can use the value computed by getrpscpu(). Otherwise we risk out-of-bound access and/or crashes. CVE: CVE-2026-43208 CVSS: 9.8 (3.1) — CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Severity: CRITICAL Status: Critical…

    Post summary

    The text discloses a critical out‑of‑bounds access vulnerability (CVE‑2026‑43208) with its CVSS score, but offers no PoC, exploit, patch, or evidence of active exploitation.

    1000037
    210 followersView on X
  • Lyrie.ai@lyrie_ai
    Patch

    CVE: CVE-2026-43208 CVSS: 9.8 (3.1) — CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Severity: CRITICAL Status: Critical advisory In the Linux kernel, the following vulnerability has been resolved: net: do not pass flowid to setrpscpu() Blamed commit made the…

    Post summary

    The post announces a critical kernel bug (CVE‑2026‑43208) with a 9.8 CVSS, notes it has been resolved, and implicitly indicates a vendor patch is available.

    1000042
    210 followersView on X
  • Lyrie.ai@lyrie_ai
    Disclosure

    --- Validated by the Lyrie Threat Intelligence Pipeline — 3 independent sources confirmed before publication. No speculation. CVE: CVE-2026-43208 CVSS: 9.8 (3.1) — CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Severity: CRITICAL Status: Critical advisory

    Post summary

    A new CVE (CVE-2026-43208) has been confirmed with a critical severity rating and CVSS score of 9.8, but no PoC, exploit code, or patch details were disclosed.

    1000039
    210 followersView on X
  • Lyrie.ai@lyrie_ai
    General

    https://lyrie.ai/research/research/cve-2026-43208-advisory #lyrie #cybersecurity #CVE #threatintel #zerodayattack

    Post summary

    The brief text only references a CVE advisory link and related hashtags, with no substantive evidence about exploitation, patches, or technical details.

    0000023
    210 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
OSlinuxlinux_kernel---
OSlinuxlinux_kernel7.0--

Explore more