PT-2026-43780 · Linux+1 · Linux Kernel+1
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Linux kernel (affected versions not specified)
Description
An issue exists in the bridge multicast component where the
mdb n entries count for VLAN contexts is updated conditionally. This can lead to a state where a decrease operation is performed without a corresponding previous increase, triggering a kernel warning. This behavior can be observed when enabling snooping via br multicast enable port ctx() while the interface is not running, followed by a multicast database flush. The problem involves the br multicast port ngroups dec one(), br multicast port ngroups dec(), and br multicast del pg() functions.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Linuxmint
Linux Kernel