CVE-2026-74624
CVE CVE-2026-74624EUVD EUVD-2026-64561Published 2026-08-22T15:32:07.000ZLast changed 2026-08-25T05:40:47.000ZCVSS 7.5
What the advisory describes
In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_conntrack: defer invalid log until after unlock TCP and SCTP conntrack paths can emit invalid-packet logs while ct->lock is still held. When invalid logging is routed to nfnetlink_log and conntrack export is enabled, the log path can re-enter conntrack netlink glue and dump the same conntrack again. Protocol attribute dumping may take ct->lock, so logging while holding that lock can deadlock. Defer the TCP invalid logs by storing only the minimal log context while ct->lock is held and emitting the log after unlocking. Also make the TCP timeout-lowering invalid path return whether a log is needed, then emit that log after unlocking. Do the same for the SCTP invalid state-transition log that can be reached while ct->lock is held. Add a lockdep assertion to nf_ct_l4proto_log_invalid() so future callers that log invalid conntracks while holding ct->lock are caught outside TCP and SCTP as well.
Source: EUVD (ENISA), in the words of the advisory.
Products the advisory names
These come from the advisory itself, not from any check we performed.
- Linux — Linux d9a6f0d0df1899ff9086a57abc600e414f4b8cdd <ca97360eba4b3dc67f1804625542f4ccc774242a; patch: 7.1.9; patch: 6.18.45; d9a6f0d0df1899ff9086a57abc600e414f4b8cdd <63853eb20bba4e00b7cd0b8cfc19337bbaaf5037; patch: 6.6.152; patch: 0; d9a6f0d0df1899ff9086a57abc600e414f4b8cdd <2d19b95c9723001f214f7a47d67b09f46238f200; patch: 7.2; d9a6f0d0df1899ff9086a57abc600e414f4b8cdd <0424186d570aa4d1ad17f516afb86bd9eaa4f42e; d9a6f0d0df1899ff9086a57abc600e414f4b8cdd <c0224327b7cbed9d3198e8dbec847281053dcd06; 6.1; patch: 6.1.184; d9a6f0d0df1899ff9086a57abc600e414f4b8cdd <9480fcf70a5aa9d320088a01c95df0e5e6391f4a; patch: 6.12.104
The versions shown are the advisory's own. Patchlage compares no version numbers and derives no judgement from them — which version is installed is something a person has to look up.
Carried in the product catalogue
An estate covering these products can be recorded in Patchlage. An advisory about them appears in the next morning's situation report.
- Linux — Linux
Does this concern one of your customers?
This page cannot answer that — it does not know your estate. Whoever has recorded their environments gets the answer the morning after publication, together with a paragraph they can forward to the customer unedited.
Try it for 28 daysPatchlage reports hits and suspected hits. About everything else this system says nothing — neither this page nor the situation report ever claims that an estate is safe.