PT-2026-43780 · Linux+1 · Linux Kernel+1

·

CVE-2026-45913

·

Published

2026-05-27

·

Updated

2026-07-24

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Linux kernel (affected versions not specified)
Description An issue exists in the bridge multicast component where the mdb n entries count for VLAN contexts is updated conditionally. This can lead to a state where a decrease operation is performed without a corresponding previous increase, triggering a kernel warning. This behavior can be observed when enabling snooping via br multicast enable port ctx() while the interface is not running, followed by a multicast database flush. The problem involves the br multicast port ngroups dec one(), br multicast port ngroups dec(), and br multicast del pg() functions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-45913
USN-8492-1
USN-8492-2
USN-8492-3
USN-8492-4
USN-8492-5
USN-8497-1
USN-8498-1
USN-8499-1
USN-8606-1
USN-8607-1
USN-8609-1

Affected Products

Linuxmint
Linux Kernel