cbcvebase.
CVE-2026-23445
published 2026-04-03

CVE-2026-23445: In the Linux kernel, the following vulnerability has been resolved: igc: fix page fault in XDP TX timestamps handling If an XDP application that requested TX…

PriorityP421medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.13%
2.9th percentile
In the Linux kernel, the following vulnerability has been resolved: igc: fix page fault in XDP TX timestamps handling If an XDP application that requested TX timestamping is shutting down while the link of the interface in use is still up the following kernel splat is reported: [ 883.803618] [ T1554] BUG: unable to handle page fault for address: ffffcfb6200fd008 ... [ 883.803650] [ T1554] Call Trace: [ 883.803652] [ T1554] [ 883.803654] [ T1554] igc_ptp_tx_tstamp_event+0xdf/0x160 [igc] [ 883.803660] [ T1554] igc_tsync_interrupt+0x2d5/0x300 [igc] ... During shutdown of the TX ring the xsk_meta pointers are left behind, so that the IRQ handler is trying to touch them. This issue is now being fixed by cleaning up the stale xsk meta data on TX shutdown. TX timestamps on other queues remain unaffected.

Affected

18 ranges
VendorProductVersion rangeFixed in
debianlinux< linux 6.19.10-1 (forky)linux 6.19.10-1 (forky)
linuxlinux
linuxlinux>= 15fd021bc4270273d8f4b7f58fdda8a16214a377 < 5e4c90c94eb766d70e30694b7fe66862aabaf24b5e4c90c94eb766d70e30694b7fe66862aabaf24b
linuxlinux>= 15fd021bc4270273d8f4b7f58fdda8a16214a377 < 31521c124e6488c4a81658e35199feb75a988d8631521c124e6488c4a81658e35199feb75a988d86
linuxlinux>= 15fd021bc4270273d8f4b7f58fdda8a16214a377 < b02fa17d1744d19cd3820bdbf6ec5d85547977bfb02fa17d1744d19cd3820bdbf6ec5d85547977bf
linuxlinux>= 15fd021bc4270273d8f4b7f58fdda8a16214a377 < 45b33e805bd39f615d9353a7194b2da5281332df45b33e805bd39f615d9353a7194b2da5281332df
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel
linuxlinux_kernel>= 0 < 6.19.10-16.19.10-1
linuxlinux_kernel>= 6.10.1 < 6.12.786.12.78
linuxlinux_kernel>= 6.13 < 6.18.206.18.20
linuxlinux_kernel>= 6.19 < 6.19.106.19.10

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.