Answer in brief
CVE-2024-26950 records a Unknown severity vulnerability in wireguard: netlink: access device through ctx instead of peer. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic), Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystem (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
Answer in brief
CVE-2024-26950 records a Unknown severity vulnerability in wireguard: netlink: access device through ctx instead of peer. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic), Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystem (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic), Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystem (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=e7096c131e5161fa3b8e52a650d7719d2857adfd <493aa6bdcffd90a4f82aa614fe4f4db0641b4068 || >=e7096c131e5161fa3b8e52a650d7719d2857adfd <4be453271a882c8ebc28df3dbf9e4d95e6ac42f5 || >=e7096c131e5161fa3b8e52a650d7719d2857adfd <09c3fa70f65175861ca948cb2f0f791e666c90e5 || >=e7096c131e5161fa3b8e52a650d7719d2857adfd <c991567e6c638079304cc15dff28748e4a3c4a37 || >=e7096c131e5161fa3b8e52a650d7719d2857adfd <93bcc1752c69bb309f4d8cfaf960ef1faeb34996 || >=e7096c131e5161fa3b8e52a650d7719d2857adfd <d44bd323d8bb8031eef4bdc44547925998a11e47 || >=e7096c131e5161fa3b8e52a650d7719d2857adfd <71cbd32e3db82ea4a74e3ef9aeeaa6971969c86f | 493aa6bdcffd90a4f82aa614fe4f4db0641b4068, 4be453271a882c8ebc28df3dbf9e4d95e6ac42f5, 09c3fa70f65175861ca948cb2f0f791e666c90e5, c991567e6c638079304cc15dff28748e4a3c4a37, 93bcc1752c69bb309f4d8cfaf960ef1faeb34996, d44bd323d8bb8031eef4bdc44547925998a11e47, 71cbd32e3db82ea4a74e3ef9aeeaa6971969c86f |
| Linux/Linuxgeneric | 5.6 | Not reported |
| Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystemgeneric | >=0 <* | * |
Published upstream
May 1, 2024
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: wireguard: netlink: access device through ctx instead of peer The previous commit fixed a bug that led to a NULL peer->device being dereferenced. It's actually easier and faster performance-wise to instead get the device from ctx->wg. This semantically makes more sense too, since ctx->wg->peer_allowedips.seq is compared with ctx->allowedips_seq, basing them both in ctx. This also acts as a defence in depth provision against freed peers.
Quoted source text, attributed separately from HOL analysis.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic), Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystem (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=e7096c131e5161fa3b8e52a650d7719d2857adfd <493aa6bdcffd90a4f82aa614fe4f4db0641b4068 || >=e7096c131e5161fa3b8e52a650d7719d2857adfd <4be453271a882c8ebc28df3dbf9e4d95e6ac42f5 || >=e7096c131e5161fa3b8e52a650d7719d2857adfd <09c3fa70f65175861ca948cb2f0f791e666c90e5 || >=e7096c131e5161fa3b8e52a650d7719d2857adfd <c991567e6c638079304cc15dff28748e4a3c4a37 || >=e7096c131e5161fa3b8e52a650d7719d2857adfd <93bcc1752c69bb309f4d8cfaf960ef1faeb34996 || >=e7096c131e5161fa3b8e52a650d7719d2857adfd <d44bd323d8bb8031eef4bdc44547925998a11e47 || >=e7096c131e5161fa3b8e52a650d7719d2857adfd <71cbd32e3db82ea4a74e3ef9aeeaa6971969c86f | 493aa6bdcffd90a4f82aa614fe4f4db0641b4068, 4be453271a882c8ebc28df3dbf9e4d95e6ac42f5, 09c3fa70f65175861ca948cb2f0f791e666c90e5, c991567e6c638079304cc15dff28748e4a3c4a37, 93bcc1752c69bb309f4d8cfaf960ef1faeb34996, d44bd323d8bb8031eef4bdc44547925998a11e47, 71cbd32e3db82ea4a74e3ef9aeeaa6971969c86f |
| Linux/Linuxgeneric | 5.6 | Not reported |
| Siemens/SIMATIC S7-1500 TM MFP - GNU/Linux subsystemgeneric | >=0 <* | * |
Published upstream
May 1, 2024
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 5, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 5, 2026
In the Linux kernel, the following vulnerability has been resolved: wireguard: netlink: access device through ctx instead of peer The previous commit fixed a bug that led to a NULL peer->device being dereferenced. It's actually easier and faster performance-wise to instead get the device from ctx->wg. This semantically makes more sense too, since ctx->wg->peer_allowedips.seq is compared with ctx->allowedips_seq, basing them both in ctx. This also acts as a defence in depth provision against freed peers.
Quoted source text, attributed separately from HOL analysis.