CVE-2026-72229
CVE CVE-2026-72229EUVD EUVD-2026-59128Published 2026-08-15T05:54:20.000ZLast changed 2026-08-17T05:10:45.000Z
What the advisory describes
In the Linux kernel, the following vulnerability has been resolved: batman-adv: clean untagged VLAN on netdev registration failure When an mesh interface is registered, it creates an untagged struct batadv_meshif_vlan on top of it via the NETDEV_REGISTER notifier. But in this process, another receiver of this notification can veto the registration. The netdev registration will be aborted because of this veto. The register_netdevice() call will try to clean up the net_device using unregister_netdevice_queue() - which only uses the .priv_destructor to free private resources. In this situation, .dellink will not be called. The cleanup of the untagged batadv_meshif_vlan must thefore be done in the destructor to avoid a leak of this object.
Source: EUVD (ENISA), in the words of the advisory.
Products the advisory names
These come from the advisory itself, not from any check we performed.
- Linux — Linux patch: 7.2; 5d2c05b213377694a2aa8ce1ed9b23f7c39b0569 <c945f6007e7851e74706c72f98763023699bcd97; patch: 5.15.212; patch: 6.18.40; 5d2c05b213377694a2aa8ce1ed9b23f7c39b0569 <86e32dfb6a6fe29898f4a562b7b6e38e480bba4d; 5d2c05b213377694a2aa8ce1ed9b23f7c39b0569 <8669a550c752d86baebc5fdc83b8ff35c4372c0e; patch: 7.1.5; patch: 5.10.261; patch: 6.1.178; 3.13; patch: 6.12.97; 5d2c05b213377694a2aa8ce1ed9b23f7c39b0569 <f2423da55976ea249f73029e468aefda4b94acba; 5d2c05b213377694a2aa8ce1ed9b23f7c39b0569 <5a82c558098889cc8bfff85cc62f563833205d91; 5d2c05b213377694a2aa8ce1ed9b23f7c39b0569 <f15ca6250591cfe78408114a54eaa8d58da51bfa; patch: 0; 5d2c05b213377694a2aa8ce1ed9b23f7c39b0569 <06ae245168268b705a204f93c318b30107d10e92; patch: 6.6.145; 5d2c05b213377694a2aa8ce1ed9b23f7c39b0569 <dbca15fcbeed5276af440a53aed3901590fa7fc9
The versions shown are the advisory's own. Patchlage compares no version numbers and derives no judgement from them — which version is installed is something a person has to look up.
Carried in the product catalogue
An estate covering these products can be recorded in Patchlage. An advisory about them appears in the next morning's situation report.
- Linux — Linux
Does this concern one of your customers?
This page cannot answer that — it does not know your estate. Whoever has recorded their environments gets the answer the morning after publication, together with a paragraph they can forward to the customer unedited.
Try it for 28 daysPatchlage reports hits and suspected hits. About everything else this system says nothing — neither this page nor the situation report ever claims that an estate is safe.