PT-2026-45915 · Unknown · Cilium Ebpf

Alifiras

·

Published

2026-06-03

·

Updated

2026-06-03

·

CVE-2026-10722

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions cilium ebpf versions prior to 0.21.0
Description An integer overflow occurs in the loadRawSpec() function within the btf/btf.go file of the LoadCollectionSpec/LoadCollectionSpecFromReader component. This issue is triggered by the manipulation of the offset argument and can only be executed from a local environment.
Recommendations Apply patch 533dfc82fd228bfadf42ea7180c39de7d9af47fa to versions prior to 0.21.0.

Exploit

Fix

Integer Overflow

Weakness Enumeration

Related Identifiers

CVE-2026-10722

Affected Products

Cilium Ebpf