SEPTEMBER 16, 2026
Live Feed
Back to database
Case File

CVE-2026-74743

CRITICAL · CVSS 9.8 EPSS 0.52%

Source: NVD + CISA KEV + EPSS · Published 2026-08-26 · Last synced 2026-09-16

CyberRota Analysis

AI-Generated

The vulnerability affects macvlan devices in the Linux kernel, where they fail to inherit necessary headroom and tailroom from their underlying devices, potentially leading to skb headroom underflows and crashes. This issue can cause significant instability in network operations, particularly for systems utilizing advanced networking features like macsec, ipsec, or tunnels. Organizations using Linux-based systems with macvlan configurations should prioritize addressing this vulnerability to ensure network reliability and prevent potential crashes.

CVE
CVE-2026-74743
Severity
CRITICAL
CVSS
9.8
EPSS
0.52%
Linux

Original NVD Description

In the Linux kernel, the following vulnerability has been resolved: macvlan: inherit needed_headroom and needed_tailroom from lowerdev macvlan devices inherit hard_header_len from lowerdev during macvlan_init(), but leave needed_headroom and needed_tailroom set to 0. When the underlying lowerdev requires extra headroom or tailroom for headers/trailers (e.g. macsec, ipsec, wireguard, tunnels, or veth with rx headroom), upper layers calculating packet headroom and tailroom fail to reserve sufficient space. This can result in reallocation overhead, skb headroom underflows, or KASAN slab-use-after-free crashes when dev_hard_header() / macvlan_hard_header() prepends header data or when lower devices append tailroom. Fix this by: 1. Inheriting needed_headroom and needed_tailroom from lowerdev in macvlan_init(). 2. Propagating needed_headroom and needed_tailroom updates to attached macvlans in macvlan_device_event() when receiving NETDEV_FEAT_CHANGE events.