CVE-2026-53006Patch(linux / enterprise_linux)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch linux enterprise_linux systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

In the Linux kernel, the following vulnerability has been resolved: ipv6: fix possible UAF in icmpv6_rcv() Caching saddr and daddr before pskb_pull() is problematic since skb->head can change. Remove these temporary variables: - We only access &ipv6_hdr(skb)->saddr and &ipv6_hdr(skb)->daddr when net_dbg_ratelimited() is called in the slow path. - Avoid potential future misuse after pskb_pull() call.

1.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-416CWE-825

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • enterprise_linux
  • linux_kernel

Threat summary

  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Affected systems

Products
enterprise_linuxlinux_kernel

3 versions affected across 2 products

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-06-30: 1Patch / Workaround · 2026-06-30: 1Technical Details · 2026-06-30: 106-30
Signal classification1 categories
Patch
1100.0%
Referenced assets1 URL
By indicator
Full discourse1 post
  • Red Hornet Intel@RedHornet_Intel
    Patch

    CVE-2026-53006 | Linux | Unknown A Use-After-Free (UAF) vulnerability in the Linux kernel's icmpv6_rcv() function could allow a remote, unauthenticated attacker to cause a system crash or potentially execute arbitrary code via crafted ICMPv6 packets. Severity: Critical Exploitation: Unknown Public PoC: Unknown Patch Available: Yes Affected Product: Linux Affected Version: 4b3418fba0fe819197e3359d5ddbef84ba2c59de before 7bff2c8fe5c35ae58bf73104f53db3676e6e5d94 Sources Research: https://git.kernel.org/stable/c/7bff2c8fe5c35ae58bf73104f53db3676e6e5d94

    Post summary

    The entry reports a critical UAF vulnerability in Linux kernel ICMPv6 handling, confirms a patch is available, and provides technical details but no PoC or evidence of active exploitation.

    0000087
    8 followersView on X
CPE platform detail4 entries

4 of 4 entries

PartVendorProductVersionTarget SWTarget HW
OSlinuxlinux_kernel---
OSredhatenterprise_linux10.0--
OSredhatenterprise_linux8.0--
OSredhatenterprise_linux9.0--

Explore more