UBUNTU-CVE-2026-52914
Dashboard / Vulnerabilities / UBUNTU-CVE-2026-52914
UBUNTU-CVE-2026-52914
Summary:
Details: In the Linux kernel, the following vulnerability has been resolved: batman-adv: fix fragment reassembly length accounting batman-adv keeps a running payload length for queued fragments and uses it to validate a fragment chain before reassembly. That accounting currently allows the accumulated fragment length to be truncated during updates. As a result, malformed fragment chains can bypass the intended validation and drive reassembly with inconsistent length state, leading to a local denial of service. Fix the accounting by storing the accumulated length in a length-typed field and rejecting update overflows before the existing validation logic runs. The fix was verified against the original reproducer and against valid fragment reassembly paths.
References: https://ubuntu.com/security/CVE-2026-52914, https://www.cve.org/CVERecord?id=CVE-2026-52914, https://git.kernel.org/linus/9cd3f16c320bfdadd4509358122368deb56a5741, https://git.kernel.org/stable/c/37be61825b15534a16ff9cfc9546de155b6df982, https://git.kernel.org/stable/c/3eb8bcb823391bd58997831b3c9c152a4ba8e255, https://git.kernel.org/stable/c/975563c5de1123dde1ec7946bf5556d20c89d74e, https://git.kernel.org/stable/c/9cd3f16c320bfdadd4509358122368deb56a5741, https://git.kernel.org/stable/c/e4f3f6b818aa6a678bc54a2d4e0bece2303c6a64, https://git.kernel.org/stable/c/e910dbf509125fe51ad68e4fa74dc8ab0a8e787a, https://git.kernel.org/stable/c/f653b040dad1af70fa5cd4fe085e4758925480c9, https://git.kernel.org/stable/c/fdb2c96efb2baeb3725e9ce3ede8f1e36f5490f0, https://ubuntu.com/security/notices/USN-8566-1, https://ubuntu.com/security/notices/USN-8568-1, https://ubuntu.com/security/notices/USN-8569-1, https://ubuntu.com/security/notices/USN-8575-1, https://ubuntu.com/security/notices/USN-8576-1, https://ubuntu.com/security/notices/USN-8593-1, https://ubuntu.com/security/notices/USN-8575-2, https://ubuntu.com/security/notices/USN-8576-2, https://ubuntu.com/security/notices/USN-8603-1, https://ubuntu.com/security/notices/USN-8575-3, https://ubuntu.com/security/notices/USN-8610-1, https://ubuntu.com/security/notices/USN-8618-1, https://ubuntu.com/security/notices/USN-8620-1, https://ubuntu.com/security/notices/USN-8620-2, https://ubuntu.com/security/notices/USN-8620-3, https://ubuntu.com/security/notices/USN-8620-4, https://ubuntu.com/security/notices/USN-8630-1, https://ubuntu.com/security/notices/USN-8630-2, https://ubuntu.com/security/notices/USN-8644-1, https://ubuntu.com/security/notices/USN-8645-1, https://ubuntu.com/security/notices/USN-8646-1, https://ubuntu.com/security/notices/USN-8630-3, https://ubuntu.com/security/notices/USN-8656-1, https://ubuntu.com/security/notices/USN-8644-2, https://ubuntu.com/security/notices/USN-8630-4, https://ubuntu.com/security/notices/USN-8663-1, https://ubuntu.com/security/notices/USN-8664-1, https://ubuntu.com/security/notices/USN-8666-1, https://ubuntu.com/security/notices/USN-8667-1, https://ubuntu.com/security/notices/USN-8668-1, https://ubuntu.com/security/notices/USN-8630-5, https://ubuntu.com/security/notices/USN-8666-2, https://ubuntu.com/security/notices/USN-8644-3, https://ubuntu.com/security/notices/USN-8666-3, https://ubuntu.com/security/notices/USN-8715-1, https://ubuntu.com/security/notices/USN-8725-1, https://ubuntu.com/security/notices/USN-8728-1, https://ubuntu.com/security/notices/USN-8748-1
Affected packages
Package
Name: linux
Purl: pkg:deb/ubuntu/linux?arch=source&distro=esm-infra-legacy%2Ftrusty
Affected ranges
Type: ECOSYSTEM
Events:
