CVE-2026-64035: Linux

Critical severity, CVSS 9.8. EPSS: 0.4% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: igc: set tx buffer type for SMD frames Sashiko pointed out that igc_fpe_init_smd_frame() initializes igc_tx_buffer fields for an SMD skb, but does not set the buffer type: https://sashiko.dev/#/patchset/20260415025226.114115-1-kohei%40enjuk.jp Since igc_tx_buffer entries are reused, a stale XDP or XSK type can remain and make TX completion use the wrong cleanup path. Set the buffer type to IGC_TX_BUFFER_TYPE_SKB.

Affected products

  • Linux Linux: from 6.16, before 6.18.34 (fixed in 6.18.34); from 6.19, before 7.0.11 (fixed in 7.0.11)

Published 2026-07-19. Last modified 2026-07-30.