Answer in brief
CVE-2026-72053 records a Unknown severity vulnerability in net: ipip: require CAP_NET_ADMIN in the device netns for changelink. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=6c742e714d8c282fd8f8b22d3e20b5141738c1ee <91571643e554ae89a91942380d5f5361fb7060a2 || >=6c742e714d8c282fd8f8b22d3e20b5141738c1ee <983cc4aa7e6f633b34c3ee743771252d7afa9a90 || >=6c742e714d8c282fd8f8b22d3e20b5141738c1ee <26544021d5c49cc6ae8a968ccb5033e6363854a4 || >=6c742e714d8c282fd8f8b22d3e20b5141738c1ee <68cadc3698c7de88966d306d12ec9c6217da228a || >=6c742e714d8c282fd8f8b22d3e20b5141738c1ee <d49edcc65e0a37cc9b386a94415c5d6670ca8b71 || >=6c742e714d8c282fd8f8b22d3e20b5141738c1ee <8211a26324667980a463c069469a818e71207e02 | 91571643e554ae89a91942380d5f5361fb7060a2, 983cc4aa7e6f633b34c3ee743771252d7afa9a90, 26544021d5c49cc6ae8a968ccb5033e6363854a4, 68cadc3698c7de88966d306d12ec9c6217da228a, d49edcc65e0a37cc9b386a94415c5d6670ca8b71, 8211a26324667980a463c069469a818e71207e02 |
| Linux/Linuxgeneric | 3.12 | Not reported |
Published upstream
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 15, 2026
In the Linux kernel, the following vulnerability has been resolved: net: ipip: require CAP_NET_ADMIN in the device netns for changelink ipip_changelink() operates on at most two netns, dev_net(dev) and the tunnel link netns t->net. They differ once the device is created in or moved to a netns other than the one the request runs in. The rtnl changelink path checks CAP_NET_ADMIN only against dev_net(dev), so a caller privileged there but not in t->net can rewrite a tunnel that lives in t->net. Gate ipip_changelink() on rtnl_dev_link_net_capable() at its top, before any attribute is parsed.
Quoted source text, attributed separately from HOL analysis.
Answer in brief
CVE-2026-72053 records a Unknown severity vulnerability in net: ipip: require CAP_NET_ADMIN in the device netns for changelink. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=6c742e714d8c282fd8f8b22d3e20b5141738c1ee <91571643e554ae89a91942380d5f5361fb7060a2 || >=6c742e714d8c282fd8f8b22d3e20b5141738c1ee <983cc4aa7e6f633b34c3ee743771252d7afa9a90 || >=6c742e714d8c282fd8f8b22d3e20b5141738c1ee <26544021d5c49cc6ae8a968ccb5033e6363854a4 || >=6c742e714d8c282fd8f8b22d3e20b5141738c1ee <68cadc3698c7de88966d306d12ec9c6217da228a || >=6c742e714d8c282fd8f8b22d3e20b5141738c1ee <d49edcc65e0a37cc9b386a94415c5d6670ca8b71 || >=6c742e714d8c282fd8f8b22d3e20b5141738c1ee <8211a26324667980a463c069469a818e71207e02 | 91571643e554ae89a91942380d5f5361fb7060a2, 983cc4aa7e6f633b34c3ee743771252d7afa9a90, 26544021d5c49cc6ae8a968ccb5033e6363854a4, 68cadc3698c7de88966d306d12ec9c6217da228a, d49edcc65e0a37cc9b386a94415c5d6670ca8b71, 8211a26324667980a463c069469a818e71207e02 |
| Linux/Linuxgeneric | 3.12 | Not reported |
Published upstream
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 15, 2026
In the Linux kernel, the following vulnerability has been resolved: net: ipip: require CAP_NET_ADMIN in the device netns for changelink ipip_changelink() operates on at most two netns, dev_net(dev) and the tunnel link netns t->net. They differ once the device is created in or moved to a netns other than the one the request runs in. The rtnl changelink path checks CAP_NET_ADMIN only against dev_net(dev), so a caller privileged there but not in t->net can rewrite a tunnel that lives in t->net. Gate ipip_changelink() on rtnl_dev_link_net_capable() at its top, before any attribute is parsed.
Quoted source text, attributed separately from HOL analysis.