Answer in brief
CVE-2026-72054 records a Unknown severity vulnerability in net: ip_vti: require CAP_NET_ADMIN in the device netns for changelink. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
Answer in brief
CVE-2026-72054 records a Unknown severity vulnerability in net: ip_vti: require CAP_NET_ADMIN in the device netns for changelink. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=895de9a3488abcdd186680f0af3cce7f2d4d4a6e <1caf737e625143c6f23c32d2b747b1a3e42e5699 || >=895de9a3488abcdd186680f0af3cce7f2d4d4a6e <32edf8aa297745226854eda2d96c0fac66c1bb15 || >=895de9a3488abcdd186680f0af3cce7f2d4d4a6e <973ead9e565423642e4533e1547b5d2c0476fb03 || >=895de9a3488abcdd186680f0af3cce7f2d4d4a6e <33fd93961557ec8e3e9958995b28684c5f949394 || >=895de9a3488abcdd186680f0af3cce7f2d4d4a6e <6d8bc0dc99472d62c57c2a3d436e6ab408592bda || >=895de9a3488abcdd186680f0af3cce7f2d4d4a6e <9571af2eec8023af9a1671b7f2cd4ab400011724 || >=895de9a3488abcdd186680f0af3cce7f2d4d4a6e <88b33ee458a6ca5fbef6c53b9dba772da69dab68 || >=895de9a3488abcdd186680f0af3cce7f2d4d4a6e <95cceadbfd52d7239bd730afdda0655287d77425 | 1caf737e625143c6f23c32d2b747b1a3e42e5699, 32edf8aa297745226854eda2d96c0fac66c1bb15, 973ead9e565423642e4533e1547b5d2c0476fb03, 33fd93961557ec8e3e9958995b28684c5f949394, 6d8bc0dc99472d62c57c2a3d436e6ab408592bda, 9571af2eec8023af9a1671b7f2cd4ab400011724, 88b33ee458a6ca5fbef6c53b9dba772da69dab68, 95cceadbfd52d7239bd730afdda0655287d77425 |
| Linux/Linuxgeneric | 3.15 | Not reported |
Published upstream
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 15, 2026
In the Linux kernel, the following vulnerability has been resolved: net: ip_vti: require CAP_NET_ADMIN in the device netns for changelink vti_changelink() operates on at most two netns, dev_net(dev) and the tunnel link netns t->net. They differ once the device is created in or moved to a netns other than the one the request runs in. The rtnl changelink path checks CAP_NET_ADMIN only against dev_net(dev), so a caller privileged there but not in t->net can rewrite a tunnel that lives in t->net. Gate vti_changelink() on rtnl_dev_link_net_capable() at its top, before any attribute is parsed.
Quoted source text, attributed separately from HOL analysis.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=895de9a3488abcdd186680f0af3cce7f2d4d4a6e <1caf737e625143c6f23c32d2b747b1a3e42e5699 || >=895de9a3488abcdd186680f0af3cce7f2d4d4a6e <32edf8aa297745226854eda2d96c0fac66c1bb15 || >=895de9a3488abcdd186680f0af3cce7f2d4d4a6e <973ead9e565423642e4533e1547b5d2c0476fb03 || >=895de9a3488abcdd186680f0af3cce7f2d4d4a6e <33fd93961557ec8e3e9958995b28684c5f949394 || >=895de9a3488abcdd186680f0af3cce7f2d4d4a6e <6d8bc0dc99472d62c57c2a3d436e6ab408592bda || >=895de9a3488abcdd186680f0af3cce7f2d4d4a6e <9571af2eec8023af9a1671b7f2cd4ab400011724 || >=895de9a3488abcdd186680f0af3cce7f2d4d4a6e <88b33ee458a6ca5fbef6c53b9dba772da69dab68 || >=895de9a3488abcdd186680f0af3cce7f2d4d4a6e <95cceadbfd52d7239bd730afdda0655287d77425 | 1caf737e625143c6f23c32d2b747b1a3e42e5699, 32edf8aa297745226854eda2d96c0fac66c1bb15, 973ead9e565423642e4533e1547b5d2c0476fb03, 33fd93961557ec8e3e9958995b28684c5f949394, 6d8bc0dc99472d62c57c2a3d436e6ab408592bda, 9571af2eec8023af9a1671b7f2cd4ab400011724, 88b33ee458a6ca5fbef6c53b9dba772da69dab68, 95cceadbfd52d7239bd730afdda0655287d77425 |
| Linux/Linuxgeneric | 3.15 | Not reported |
Published upstream
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 15, 2026
In the Linux kernel, the following vulnerability has been resolved: net: ip_vti: require CAP_NET_ADMIN in the device netns for changelink vti_changelink() operates on at most two netns, dev_net(dev) and the tunnel link netns t->net. They differ once the device is created in or moved to a netns other than the one the request runs in. The rtnl changelink path checks CAP_NET_ADMIN only against dev_net(dev), so a caller privileged there but not in t->net can rewrite a tunnel that lives in t->net. Gate vti_changelink() on rtnl_dev_link_net_capable() at its top, before any attribute is parsed.
Quoted source text, attributed separately from HOL analysis.