Answer in brief
CVE-2026-98031 records a Unknown severity vulnerability in nexthop: Initialize extack in remove_nh_grp_entry(). The current sources do not mark it as known exploited. The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps Linux/Linux (generic), Linux/Linux (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric | >=833a1065eeb14437a9a0dfa9dad06ea09894e0b5 <030c878eaedf0449e2b5401a0a0146d0afcc645e || >=833a1065eeb14437a9a0dfa9dad06ea09894e0b5 <d643cea4248668dc493c513aa7cbc6505eb1a4a9 || >=833a1065eeb14437a9a0dfa9dad06ea09894e0b5 <d80677ad7aa5bebfccfd58caa4852b65abe70561 || >=833a1065eeb14437a9a0dfa9dad06ea09894e0b5 <5bd9e4e7cdaa03879e9b73b12ab52cceb1edd55b | 030c878eaedf0449e2b5401a0a0146d0afcc645e, d643cea4248668dc493c513aa7cbc6505eb1a4a9, d80677ad7aa5bebfccfd58caa4852b65abe70561, 5bd9e4e7cdaa03879e9b73b12ab52cceb1edd55b |
| Linux/Linuxgeneric | 5.11 | Not reported |
Published upstream
Sep 25, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Sep 25, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Sep 25, 2026
In the Linux kernel, the following vulnerability has been resolved: nexthop: Initialize extack in remove_nh_grp_entry() remove_nh_grp_entry() prints the extack message when a listener fails to replace the reduced nexthop group. However, extack is not initialized and listeners are not required to set a message when returning an error. Neither netdevsim nor mlxsw do so when an allocation fails, resulting in the dereference of an uninitialized stack pointer. Fix by zero-initializing extack, as was done in commit 6347c5314cee ("nexthop: initialize extack in nh_res_bucket_migrate()").
Quoted source text, attributed separately from HOL analysis.