CVE-2026-72450: Linux

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

In the Linux kernel, the following vulnerability has been resolved: xfrm: validate selector family and prefixlen during match syzbot reported a shift-out-of-bounds in xfrm_selector_match() due to AF_UNSPEC selector with large prefixlen (e.g. 128) matched against IPv4 flow (when XFRM_STATE_AF_UNSPEC is set). Fix this by: - Rejecting mismatched families in xfrm_selector_match. - Returning false in addr4_match if prefixlen > 32. - Returning false in addr_match if prefixlen > 128 (prevents overflow).

Affected products

  • Linux Linux: from 5.10.229, before 5.10.261 (fixed in 5.10.261); from 5.15.170, before 5.15.212 (fixed in 5.15.212); from 6.1.115, before 6.1.178 (fixed in 6.1.178); from 6.6.59, before 6.6.145 (fixed in 6.6.145); from 4.19.323, before 4.20 (fixed in 4.20); from 5.4.285, before 5.5 (fixed in 5.5); …

Published 2026-08-15. Last modified 2026-08-17.