LIVE · cybersecurity feed
Live wire
cve recordcritical

CVE-2026-72065

Published
CVSS9.8
Severitycritical
Weakness
ExploitedNot in CISA KEV

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Description

In the Linux kernel, the following vulnerability has been resolved: net: mana: Validate the packet length reported by the NIC Validate the packet length reported in the RX CQE before passing it to skb processing. The CQE is supplied by the NIC device and should not be blindly trusted.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-72065

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-72065.