Description
In the Linux kernel, the following vulnerability has been resolved:

batman-adv: frag: fix primary_if leak on failed linearization

If the skb has a frag_list, it must be linearized before it can be split
using skb_split(). But when this step failed, it must not only free the skb
but also take care of the reference to the already found primary_if.
Published: 2026-08-15
Score: 5.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

batman‑adv attempts to linearize an sk_buff that has a frag_list before splitting it. If the linearization fails, the original code frees the sk_buff but does not release the reference to the previously identified primary_if. This oversight leaves a dangling reference that can result in a memory leak or kernel memory corruption. An entity that can trigger this failure path may be able to cause a kernel crash, leading to denial of service.

Affected Systems

All Linux kernel installations that include the batman‑adv networking extension are potentially impacted. The advisory does not list specific kernel versions, so any distribution shipping with batman‑adv and an unpatched linearization routine may be affected.

Risk and Exploitability

The CVSS score is 5.5, and the EPSS score is < 1%, so a quantitative risk estimate can be made. The defect is triggered by network traffic that contains packet fragments, so the likely attack vector is network‑based. The vulnerability is not listed in the CISA KEV catalog, indicating no publicly known exploit at this time. Security teams should consider the risk moderate to high for systems exposed to external networks, given the potential for kernel memory corruption and denial of service.

Generated by OpenCVE AI on August 22, 2026 at 07:45 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the Linux kernel to a version that includes the batman‑adv linearization fix, as released by the vendor.
  • If a patched kernel is not yet available, disable the batman‑adv kernel module or restrict its usage until the fix is applied.
  • Monitor kernel logs (e.g., dmesg, syslog) for messages indicating crashes or memory corruption that might result from the unpatched flaw.

Generated by OpenCVE AI on August 22, 2026 at 07:45 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 19 Aug 2026 00:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-911
References
Metrics threat_severity

None

cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'}

threat_severity

Moderate


Sat, 15 Aug 2026 06:00:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: batman-adv: frag: fix primary_if leak on failed linearization If the skb has a frag_list, it must be linearized before it can be split using skb_split(). But when this step failed, it must not only free the skb but also take care of the reference to the already found primary_if.
Title batman-adv: frag: fix primary_if leak on failed linearization
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-08-17T05:10:44.186Z

Reserved: 2026-08-09T03:40:39.913Z

Link: CVE-2026-72228

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-15T06:21:49.617

Modified: 2026-08-17T06:18:24.027

Link: CVE-2026-72228

cve-icon Redhat

Severity : Moderate

Publid Date: 2026-08-15T00:00:00Z

Links: CVE-2026-72228 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-08-22T08:00:13Z

Weaknesses
  • CWE-911

    Improper Update of Reference Count