
🚨High - Linux kernel GENEVE GRO inner-offset mismatch → out-of-bounds access (CVE-2026-72407) geneve_gro_complete() in drivers/net/geneve.c doesn't revalidate the inner header offset when GRO hint state disagrees with what geneve_gro_receive() parsed, so crafted UDP GENEVE traffic can drive an out-of-bounds read/write in the kernel — panic at minimum, potential info leak or memory corruption. Only reachable on hosts with a GENEVE device in the receive path (OVS/OVN, Cilium, AWS Gateway Load Balancer targets), and GRO must be enabled. 👉Affected: Linux 7.0 – < 7.1.5 | Upgrade to 7.1.5+
Post summary
The tweet announces a Linux kernel out‑of‑bounds vulnerability affecting versions 7.0‑<7.1.5 and advises updating to the patched 7.1.5 or newer.

