CVE-2026-45930: net: mctp: ensure our nlmsg responses are initialised
In the Linux kernel, the following vulnerability has been resolved:
net: mctp: ensure our nlmsg responses are initialised
Syed Faraz Abrar (@farazsth98) from Zellic, and Pumpkin (@u1f383) from DEVCORE Research Team working with Trend Micro Zero Day Initiative report that a RTMGETNEIGH will return uninitalised data in the pad bytes of the ndmsg data.
Ensure we're initialising the netlink data to zero, in the link, addr and neigh response messages.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.6.143.1-1
Event History
Frequently Asked Questions
What level of attacker access is required?
The CVSS vector indicates local access with low privileges is required. No user interaction is required.
What security impact is indicated by the CVSS assessment?
The CVSS vector indicates no confidentiality or integrity impact and a high availability impact. The assigned severity is medium, with a score of 6.6.
Are fixed package or kernel versions identified?
No fixed version is provided in the available data. The references include three stable kernel commit links, and Microsoft azl3 kernel 6.6.141.1-1 is listed as affected software.