CVE-2026-80987
Received Received - Intake

Memory Leak in Linux Kernel NTB Transport

Vulnerability report for CVE-2026-80987, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-11

Last updated on: 2026-09-14

Assigner: kernel.org

Description

In the Linux kernel, the following vulnerability has been resolved: NTB: ntb_transport: Reject oversized TX buffers ntb_process_tx() handles an oversized buffer by calling tx_handler() with a NULL data pointer and returning success. ntb_netdev therefore neither frees the skb in its completion callback nor takes its enqueue error path, leaking it. Reject oversized buffers in ntb_transport_tx_enqueue() before acquiring a queue entry and return -EMSGSIZE. The caller retains ownership of the buffer, and the preceding netdev patch frees the skb when enqueue returns this permanent error.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-11
Last Modified
2026-09-14
Generated
2026-10-02
AI Q&A
2026-09-12
EPSS Evaluated
2026-09-29
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
linux linux_kernel *

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-UNKNOWN

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability in the Linux kernel involves improper handling of oversized network packets in the NTB (Non-Transparent Bridge) transport layer. When a TX buffer is too large, the system incorrectly processes it, leading to memory leaks because the packet is not freed after transmission.

Detection Guidance

This vulnerability involves oversized TX buffers in the Linux kernel's NTB (Non-Transparent Bridge) transport layer. Detection requires checking kernel logs for related errors or examining network bridge configurations for unusual buffer sizes. No specific commands are provided in the context to directly detect this issue.

Impact Analysis

This could cause system instability due to memory leaks, potentially leading to denial-of-service conditions if memory resources are exhausted. It may also disrupt network communication if packet handling fails.

Compliance Impact

This vulnerability does not directly affect compliance with GDPR, HIPAA, or similar standards. It involves a memory leak in the Linux kernel's NTB subsystem due to improper handling of oversized TX buffers, which could lead to resource exhaustion but does not inherently violate data protection or privacy regulations.

Mitigation Strategies

Update the Linux kernel to a patched version that resolves this issue. The vulnerability is fixed by rejecting oversized buffers in ntb_transport_tx_enqueue() and ensuring proper cleanup of skb buffers. Check with your distribution for kernel updates addressing CVE-2026-80987.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-80987. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart