HarborGuard / CVE
Back to search
HIGHCVE-2026-31640Published Modified CNA Linux

CVE-2026-31640: rxrpc: Fix use of wrong skb when comparing queued RESP challenge serial

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix use of wrong skb when comparing queued RESP challenge serial In rxrpc_post_response(), the code should be comparing the challenge serial number from the cached response before deciding to switch to a newer response, but looks at the newer packet private data instead, rendering the comparison always false. Fix this by switching to look at the older packet. Fix further[1] to substitute the new packet in place of the old one if newer and also to release whichever we don't use.

Metrics

CVSS v3.1
7.5
Severity
HIGH
Fixed in
0
Affected Products
2

Fix available

020386e7f8d97475b8d815873e246423317ec42606.18.236.19.137.09132b1a7bf83b4a8042fffbc99d075b727a16742b33f5741bb187db8ff32e8f5b96def77cc94dfca
Affected packages
  • Linux / Linux
    < 9132b1a7bf83b4a8042fffbc99d075b727a16742 (from 5800b1cf3fd8ccab752a101865be1e76dac33142) · < 20386e7f8d97475b8d815873e246423317ec4260 (from 5800b1cf3fd8ccab752a101865be1e76dac33142) · < b33f5741bb187db8ff32e8f5b96def77cc94dfca (from 5800b1cf3fd8ccab752a101865be1e76dac33142)
  • Linux / Linux
    6.16
    Fixed in 0, 6.18.23, 6.19.13, 7.0
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H