Description
In the Linux kernel, the following vulnerability has been resolved:

net: bridge: arp/nd proxy: fix reading neigh ha

Currently neigh ha address is read directly, but that can result in
torn/partial reads if the neigh is being updated. Use neigh_ha_snapshot
to take a stable snapshot of the address.
Published: 2026-09-17
Score: n/a
EPSS: < 1% Very Low
KEV: No
Impact: Service Disruption
Action: Apply Patch
AI Analysis

Impact

The kernel code that reports neighbor hardware addresses in the bridge ARP/ND proxy path reads the address field directly from the neighbor structure. When a neighbor entry is being updated concurrently, this access can cause torn or partial reads, producing incorrect or unstable hardware address values. The consequence is that the bridge may advertise wrong MAC addresses, potentially leading to ARP or NDP lookup failures, packet misdelivery, and degradation of network connectivity. The defect does not provide a direct code‑execution path, but it can cause denial‑of‑service type symptoms for hosts relying on the bridge for local communication.

Affected Systems

This issue affects the Linux kernel itself, impacting all distributions that ship a kernel containing the vulnerable code prior to the fix. Exact affected kernel versions are not listed in the CVE data; users should check their distribution’s security advisories for affected releases.

Risk and Exploitability

The CVSS score is not provided, but the EPSS score is less than 1 % and the vulnerability is not in the CISA KEV catalogue, indicating that it is considered low likelihood for exploitation. The primary risk is to network availability rather than confidentiality or integrity. The attack vector is likely local to the host, inferred from the need for an attacker to manipulate neighbor table updates. The risk is limited to the local machine or the immediate host if such manipulation is possible.

Generated by OpenCVE AI on September 20, 2026 at 03:43 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade the Linux kernel to a version that includes the fix for CVE-2026-90106
  • Temporarily disable or remove bridge ARP/ND proxy functionality on affected hosts until the patch is applied to avoid exposure to incomplete neighbor hardware address reads
  • Implement local ARP/NDP filtering or monitoring to detect abnormal neighbor entries and mitigate misadvertised MAC addresses during the patch window

Generated by OpenCVE AI on September 20, 2026 at 03:43 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 20 Sep 2026 04:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-362

Thu, 17 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Description In the Linux kernel, the following vulnerability has been resolved: net: bridge: arp/nd proxy: fix reading neigh ha Currently neigh ha address is read directly, but that can result in torn/partial reads if the neigh is being updated. Use neigh_ha_snapshot to take a stable snapshot of the address.
Title net: bridge: arp/nd proxy: fix reading neigh ha
First Time appeared Linux
Linux linux Kernel
CPEs cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Vendors & Products Linux
Linux linux Kernel
References

Subscriptions

Linux Linux Kernel
cve-icon MITRE

Status: PUBLISHED

Assigner: Linux

Published:

Updated: 2026-09-17T16:06:15.470Z

Reserved: 2026-09-11T19:38:34.787Z

Link: CVE-2026-90106

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-17T17:17:02.463

Modified: 2026-09-17T17:17:02.463

Link: CVE-2026-90106

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T03:45:12Z

Weaknesses
  • CWE-362

    Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')