VDB

CVE-2026-64553

CVE-2026-64553 PUBLISHED

Reported by Linux · Published July 27, 2026

In the Linux kernel, the following vulnerability has been resolved: net: psample: fix info leak in PSAMPLE_ATTR_DATA psample open codes nla_put() presumably to avoid wiping the data with 0s just to override it with packet data. This open coding is missing clearing the pad, however, each netlink attr is padded to 4B and data_len may not be divisible by 4B.

EPSS 0.18% · 7.3th percentile

Risk Scores

EPSS Score
0.18%
7.3th percentile

Affected Products

VendorProductVersions
LinuxLinux6ae0a6286171154661b74f7f550f9441c6008424, 6ae0a6286171154661b74f7f550f9441c6008424, 6ae0a6286171154661b74f7f550f9441c6008424
LinuxLinux4.11, 0, 5.10.261
linuxlinux_kernel4.11, 4.11, 4.11
LinuxLinux6ae0a6286171154661b74f7f550f9441c6008424, 6ae0a6286171154661b74f7f550f9441c6008424, 6ae0a6286171154661b74f7f550f9441c6008424

Timeline

  • Jul 27, 2026 CVE Published
  • Jul 28, 2026 Coalition ESS Score
  • Jul 28, 2026 Security Advisory
  • Aug 7, 2026 EPSS Score

References

Open in Interactive Console →
$ Console Community · 100/wk Open console ›