CVE-2026-23398: icmp: fix NULL pointer dereference in icmp_tag_validation()
icmp: fix NULL pointer dereference in icmptagvalidation()
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.6.130.1-1
Event History
Frequently Asked Questions
What is the severity of CVE-2026-23398?
CVE-2026-23398 has a high severity rating due to the potential for a NULL pointer dereference that can lead to system crashes.
How do I fix CVE-2026-23398?
The fix for CVE-2026-23398 involves updating your Linux kernel to the latest stable version where the vulnerability has been patched.
Which versions of the Linux kernel are affected by CVE-2026-23398?
CVE-2026-23398 affects certain versions of the Linux kernel prior to the patch being applied.
What are the potential impacts of CVE-2026-23398?
Exploitation of CVE-2026-23398 could lead to denial of service due to NULL pointer dereference in the icmp_tag_validation() function.
Is CVE-2026-23398 related to network security?
Yes, CVE-2026-23398 is related to network security as it affects the ICMP protocol handling in the Linux kernel.