Threats Tagged 'ghsa-rg55-jvw9-p7m7'
View all threats tagged with 'ghsa-rg55-jvw9-p7m7'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'ghsa-rg55-jvw9-p7m7'
Click on any threat for detailed analysis and mitigation recommendations
A use-after-free and type confusion vulnerability exists in the Linux kernel SCTP implementation in the SCTP_SENDALL path of sctp_sendmsg(). The issue arises due to improper revalidation of a list cursor after a call to sctp_sendmsg_to_asoc(), which may drop the socket lock and allow concurrent modifications to the association list. This can lead to use-after-free or type confusion conditions, potentially resulting in arbitrary code execution or system instability. The vulnerability is identified as CVE-2026-46227 and affects Linux kernel version 3.0. A fix has been issued by re-deriving the list cursor after the critical call to ensure it points to a valid association. Red Hat has released a security update addressing this issue in their kernel packages for Red Hat Enterprise Linux 10. Join the discussion | GCVE Database | 05/28/2026, 12:30:33 UTC Added: 05/29/2026, 21:02:02 UTC |
Showing 1 to 1 of 1 result