batman-adv: dat: ensure accessible eth_hdr proto field
Summary
| CVE | CVE-2026-80599 |
| State | PUBLISHED |
| Assigner | Linux |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-08-28 08:16:43 UTC |
| Updated | 2026-08-28 08:16:43 UTC |
| Description | In the Linux kernel, the following vulnerability has been resolved:
batman-adv: dat: ensure accessible eth_hdr proto field
When batadv_get_vid() accesses the proto field of the ethernet header, it
is not checking if the data itself is accessible. The caller is responsible
for it. But in contrast to other call sites, batadv_dat_get_vid() and its
caller didn't make sure this is true. This could have caused an
out-of-bounds access. |
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|
| CNA |
Linux |
Linux |
affected be1db4f6615b5e6156c807ea8985171c215c2d57 da3677b5ed362742d30ceab31bfafcdc74dc2642 git |
Not specified |
| CNA |
Linux |
Linux |
affected be1db4f6615b5e6156c807ea8985171c215c2d57 6d3ea37074bb747f745d28138f87745ba9bd97c5 git |
Not specified |
| CNA |
Linux |
Linux |
affected be1db4f6615b5e6156c807ea8985171c215c2d57 7913935d41f166c367bbf7cc76a79e50044388e8 git |
Not specified |
| CNA |
Linux |
Linux |
affected be1db4f6615b5e6156c807ea8985171c215c2d57 3c62694c31f043568c3f4784b8d247cc3bea6b4c git |
Not specified |
| CNA |
Linux |
Linux |
affected be1db4f6615b5e6156c807ea8985171c215c2d57 5836a050d02e9598fa0f71e88dde28b63dfa35e3 git |
Not specified |
| CNA |
Linux |
Linux |
affected be1db4f6615b5e6156c807ea8985171c215c2d57 8f76277d02176cd739945bba3379448e2e22e799 git |
Not specified |
| CNA |
Linux |
Linux |
affected be1db4f6615b5e6156c807ea8985171c215c2d57 4407ff3af469356f9641c4a6e7072309bae86bea git |
Not specified |
| CNA |
Linux |
Linux |
affected be1db4f6615b5e6156c807ea8985171c215c2d57 26560c4a03dc4d607331600c187f59ab2df5f341 git |
Not specified |
| CNA |
Linux |
Linux |
affected 3.13 |
Not specified |
| CNA |
Linux |
Linux |
unaffected 3.13 semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 5.10.261 5.10.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 5.15.212 5.15.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.1.178 6.1.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.6.145 6.6.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.12.97 6.12.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 6.18.40 6.18.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 7.1.5 7.1.* semver |
Not specified |
| CNA |
Linux |
Linux |
unaffected 7.2 * original_commit_for_fix |
Not specified |
References
| Reference | Source | Link | Tags |
|---|
| git.kernel.org/stable/c/5836a050d02e9598fa0f71e88dde28b63dfa35e3 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/8f76277d02176cd739945bba3379448e2e22e799 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/3c62694c31f043568c3f4784b8d247cc3bea6b4c |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/26560c4a03dc4d607331600c187f59ab2df5f341 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/4407ff3af469356f9641c4a6e7072309bae86bea |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/6d3ea37074bb747f745d28138f87745ba9bd97c5 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/da3677b5ed362742d30ceab31bfafcdc74dc2642 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| git.kernel.org/stable/c/7913935d41f166c367bbf7cc76a79e50044388e8 |
416baaa9-dc9f-4396-8d5f-8c081fb06d67 |
git.kernel.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.