cbcvebase.
CVE-2026-43184
published 2026-05-06

CVE-2026-43184: In the Linux kernel, the following vulnerability has been resolved: rnbd-srv: Zero the rsp buffer before using it Before using the data buffer to send back the…

PriorityP342high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
EPSS
0.44%
35.9th percentile
In the Linux kernel, the following vulnerability has been resolved: rnbd-srv: Zero the rsp buffer before using it Before using the data buffer to send back the response message, zero it completely. This prevents any stray bytes to be picked up by the client side when there the message is exchanged between different protocol versions.

Affected

42 ranges· showing 25
VendorProductVersion rangeFixed in
linuxlinux
linuxlinux>= 2de6c8de192b9341ffa5e84afe1ce6196d4eef41 < e4272754063d52c9ad0169865add8816ba696471e4272754063d52c9ad0169865add8816ba696471
linuxlinux>= 2de6c8de192b9341ffa5e84afe1ce6196d4eef41 < e2cacec7d4291300a282feb3af8eba57b93b15aae2cacec7d4291300a282feb3af8eba57b93b15aa
linuxlinux>= 2de6c8de192b9341ffa5e84afe1ce6196d4eef41 < b646e54d23b9b592d612a2036aab14e0f6c14206b646e54d23b9b592d612a2036aab14e0f6c14206
linuxlinux>= 2de6c8de192b9341ffa5e84afe1ce6196d4eef41 < 30868a6a5238849d554295aff3ce61d242d7fad830868a6a5238849d554295aff3ce61d242d7fad8
linuxlinux>= 2de6c8de192b9341ffa5e84afe1ce6196d4eef41 < 7aac0a30dcf41cdb510526740d9a2ab1520c5d987aac0a30dcf41cdb510526740d9a2ab1520c5d98
linuxlinux>= 2de6c8de192b9341ffa5e84afe1ce6196d4eef41 < c94ede3c436dfbd9cedd9cb69f604f6fc901b6a2c94ede3c436dfbd9cedd9cb69f604f6fc901b6a2
linuxlinux>= 2de6c8de192b9341ffa5e84afe1ce6196d4eef41 < 852475278ca5e96e0c0275950e1a84203e602b33852475278ca5e96e0c0275950e1a84203e602b33
linuxlinux>= 2de6c8de192b9341ffa5e84afe1ce6196d4eef41 < 69d26698e4fd44935510553809007151b2fe4db569d26698e4fd44935510553809007151b2fe4db5
linuxlinux_kernel>= 5.11 < 5.15.2025.15.202
linuxlinux_kernel>= 5.16 < 6.1.1656.1.165
linuxlinux_kernel>= 5.8 < 5.10.2525.10.252
linuxlinux_kernel>= 6.13 < 6.18.166.18.16
linuxlinux_kernel>= 6.19 < 6.19.66.19.6
linuxlinux_kernel>= 6.2 < 6.6.1286.6.128
linuxlinux_kernel>= 6.7 < 6.12.756.12.75
ubuntulinux
ubuntulinux-aws
ubuntulinux-aws-6.8
ubuntulinux-aws-fips
ubuntulinux-azure-fips
ubuntulinux-fips
ubuntulinux-gcp
ubuntulinux-gcp-6.8
ubuntulinux-gcp-fips

CVSS provenance

nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
vendor_ubuntu8.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.