oM noM Security Feeds cve
vulnerability context

CVE-2026-43503

CVSS 8.8 HIGHEPSS 3.0%OTX 9 pulses

In the Linux kernel, the following vulnerability has been resolved: net: skbuff: propagate shared-frag marker through frag-transfer helpers Two frag-transfer helpers (__pskb_copy_fclone() and skb_shift()) fail to propagate the SKBFL_SHARED_FRAG bit in skb_shinfo()->flags when moving frags from source to destination. __pskb_copy_fclone() defers the rest of the shinfo metadata to skb_copy_header() after copying frag descriptors, but that helper only carries over gso_{size,segs, type} and never touches skb_shinfo()->flags; skb_shift() moves frag descriptors directly and leaves flags untouched....

Published 2026-05-23 · last modified 2026-06-17

details

CISA KEV status
Not in catalog
CVSS v3
8.8 / HIGH
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
EPSS
3.0% percentile (score 0.0013)
OTX pulses
9 total, 0 recent

source mentions 3

source consensus

  • Bluesky
  • The Hacker News
Want the 3-bullet summary of CVE-2026-43503, plus webhook alerts when KEV is updated? Pro is $10/mo.