CVE-2026-46208: batman-adv: stop tp_meter sessions during mesh teardown
Published May 28, 2026
·Updated
batman-adv: stop tpmeter sessions during mesh teardown
Affected Software
9 affected componentsFixes available
Linux batman-adv
Linux Linux kernel>=4.8<6.6.140
Linux Linux kernel>=6.7<6.12.90
Linux Linux kernel>=6.13<6.18.32
Linux Linux kernel>=6.19<7.0.9
Linux Linux kernel=7.1-rc1
Linux Linux kernel=7.1-rc2
Linux Linux kernel=7.1-rc3
Microsoft azl3 kernel 6.6.139.1-1<6.6.141.1-1
6.6.141.1-1
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 6.6.141.1-1
Event History
May 28, 2026
CVE Published
via MITRE·09:40 AM
Data Sourced
via MITRE·09:40 AM
DescriptionSeverity
Data Sourced
via NVD·10:16 AM
RemedyDescriptionSeverityAffected Software
May 29, 2026
Data Sourced
via Microsoft·08:05 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·08:05 AM
Affected Software
Updated
via Microsoft·08:05 AM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2026-46208?
CVE-2026-46208 has a high severity rating of 7.8.
2
What impact does CVE-2026-46208 have?
CVE-2026-46208 can lead to potential information disclosure and integrity issues due to the improper management of TP meter sessions.
3
How do I fix CVE-2026-46208?
To fix CVE-2026-46208, you should update the Linux kernel and batman-adv module to the latest patched versions.
4
What are the affected systems for CVE-2026-46208?
CVE-2026-46208 affects systems running the Linux kernel with the batman-adv module.
5
Is CVE-2026-46208 exploitable remotely?
CVE-2026-46208 has a low attack vector, requiring local access to exploit the vulnerability.