CVE-2026-46206
In the Linux kernel, the following vulnerability has been resolved: batman-adv: reject new tp_meter sessions during teardown Prevent tp_meter from starting new sender or receiver sessions after mesh_state has left BATADV_MESH_ACTIVE.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.14%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
In the Linux kernel, the following vulnerability has been resolved: batman-adv: reject new tp_meter sessions during teardown Prevent tp_meter from starting new sender or receiver sessions after mesh_state has left BATADV_MESH_ACTIVE.
- CVSS 3.1
- 7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 0.14% probability · 4th percentile
- CISA KEV
- Not listed
- Affected
- linux/linux kernel
- Source
- 416baaa9-dc9f-4396-8d5f-8c081fb06d67
References
- https://git.kernel.org/stable/c/0a7a840074c9ca5ebffc9c52358c8ea55828ec71Patch
- https://git.kernel.org/stable/c/3243543592425beec83d453793e9d27caa0d8e66Patch
- https://git.kernel.org/stable/c/52e6ec3e972cf27792cc1559874dbee19f286869Patch
- https://git.kernel.org/stable/c/ca39545cf07c142b39d474a1439a046bf28def3dPatch
- https://git.kernel.org/stable/c/dcff44644bb518598b1a6be722706d6174b2f6a1Patch
- https://git.kernel.org/stable/c/e1e2194cc725ec1d41f9412496212f0fa0519c36Patch
- https://git.kernel.org/stable/c/e4a3c4a4c8f6efd243c3e448c05b7bebcbf7b3b6Patch
- https://git.kernel.org/stable/c/ff93f86ecbb50a4709c403fc279a396e308edde5Patch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.