Answer in brief
CVE-2026-72399 records a Unknown severity vulnerability in net: enetc: check the number of BDs needed for xdp_frame. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=9d2b68cc108db2fdb35022ed2d88cfb305c441a6 <1ecb199b0e6d12ab6c26c0b7edf1a8f4472d9aed || >=9d2b68cc108db2fdb35022ed2d88cfb305c441a6 <f55276160ffad3e235b657ee4b7304eb99b90e5c || >=9d2b68cc108db2fdb35022ed2d88cfb305c441a6 <cfbc6e9b84dcc0aa2d65c84ea4745af327763209 || >=9d2b68cc108db2fdb35022ed2d88cfb305c441a6 <1681cc7974a6123f5d5740b03bc11e4784bd2542 || >=9d2b68cc108db2fdb35022ed2d88cfb305c441a6 <d22829101ab675607ad6c3d420fb3ab875f46bbb || >=9d2b68cc108db2fdb35022ed2d88cfb305c441a6 <555c5475e787802eeae0d2b91c2f66c330db2767 | 1ecb199b0e6d12ab6c26c0b7edf1a8f4472d9aed, f55276160ffad3e235b657ee4b7304eb99b90e5c, cfbc6e9b84dcc0aa2d65c84ea4745af327763209, 1681cc7974a6123f5d5740b03bc11e4784bd2542, d22829101ab675607ad6c3d420fb3ab875f46bbb, 555c5475e787802eeae0d2b91c2f66c330db2767 |
| Linux/Linuxgeneric | 5.13 | Not reported |
Published upstream
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 15, 2026
In the Linux kernel, the following vulnerability has been resolved: net: enetc: check the number of BDs needed for xdp_frame The size of xdp_redirect_arr array is ENETC_MAX_SKB_FRAGS. However, the number of fragments contained in xdp_frame may be greater than or equal to ENETC_MAX_SKB_FRAGS, which will cause the access to xdp_redirect_arr to be out of bounds.
Quoted source text, attributed separately from HOL analysis.
Answer in brief
CVE-2026-72399 records a Unknown severity vulnerability in net: enetc: check the number of BDs needed for xdp_frame. The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=9d2b68cc108db2fdb35022ed2d88cfb305c441a6 <1ecb199b0e6d12ab6c26c0b7edf1a8f4472d9aed || >=9d2b68cc108db2fdb35022ed2d88cfb305c441a6 <f55276160ffad3e235b657ee4b7304eb99b90e5c || >=9d2b68cc108db2fdb35022ed2d88cfb305c441a6 <cfbc6e9b84dcc0aa2d65c84ea4745af327763209 || >=9d2b68cc108db2fdb35022ed2d88cfb305c441a6 <1681cc7974a6123f5d5740b03bc11e4784bd2542 || >=9d2b68cc108db2fdb35022ed2d88cfb305c441a6 <d22829101ab675607ad6c3d420fb3ab875f46bbb || >=9d2b68cc108db2fdb35022ed2d88cfb305c441a6 <555c5475e787802eeae0d2b91c2f66c330db2767 | 1ecb199b0e6d12ab6c26c0b7edf1a8f4472d9aed, f55276160ffad3e235b657ee4b7304eb99b90e5c, cfbc6e9b84dcc0aa2d65c84ea4745af327763209, 1681cc7974a6123f5d5740b03bc11e4784bd2542, d22829101ab675607ad6c3d420fb3ab875f46bbb, 555c5475e787802eeae0d2b91c2f66c330db2767 |
| Linux/Linuxgeneric | 5.13 | Not reported |
Published upstream
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Aug 15, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Aug 15, 2026
In the Linux kernel, the following vulnerability has been resolved: net: enetc: check the number of BDs needed for xdp_frame The size of xdp_redirect_arr array is ENETC_MAX_SKB_FRAGS. However, the number of fragments contained in xdp_frame may be greater than or equal to ENETC_MAX_SKB_FRAGS, which will cause the access to xdp_redirect_arr to be out of bounds.
Quoted source text, attributed separately from HOL analysis.