VulnerabilityModified
CVE-2026-43103
In the Linux kernel, the following vulnerability has been resolved: net: lapbether: handle NETDEV_PRE_TYPE_CHANGE lapbeth_data_transmit() expects the underlying device type to be ARPHRD_ETHER.
MEDIUM 5.5EPSS 0.12%
Does this matter?
Lower severity and a low EPSS score (0.12%). Track it; it rarely justifies an emergency change on its own.
Description
In the Linux kernel, the following vulnerability has been resolved: net: lapbether: handle NETDEV_PRE_TYPE_CHANGE lapbeth_data_transmit() expects the underlying device type to be ARPHRD_ETHER. Returning NOTIFY_BAD from lapbeth_device_event() makes sure bonding driver can not break this expectation.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.12% probability · 2th percentile
- CISA KEV
- Not listed
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/328bb2cff5c2ed973f595ded769e15f4b7a117bePatch
- https://git.kernel.org/stable/c/363a38044b8cd5b496d241651a1fb666e7c5fe3ePatch
- https://git.kernel.org/stable/c/63851f60781aa89258c8f0952cd13940aab0888ePatch
- https://git.kernel.org/stable/c/698642a01d53107ce9b3fc08bd801284af478a2b
- https://git.kernel.org/stable/c/a10570973619cba9dfa6d723177251b846fae587
- https://git.kernel.org/stable/c/b117056768ab7deb434e7d72065e48d2083a0c2aPatch
- https://git.kernel.org/stable/c/b120e4432f9f56c7103133d6a11245e617695adbPatch
- https://git.kernel.org/stable/c/ffc5ed59f6dc87c51e8775f002619310225742e8
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.