Skip to main content
HIGH

CVE-2026-46300

CVSS v3

7.8

HIGH

EPSS Score

1.6 %

exploit probability

CISA KEV

No

known exploited

Exploitation

SSVC status

Description

In the Linux kernel, the following vulnerability has been resolved: net: skbuff: preserve shared-frag marker during coalescing skb_try_coalesce() can attach paged frags from @from to @to. If @from has SKBFL_SHARED_FRAG set, the resulting @to skb can contain the same externally-owned or page-cache-backed frags, but the shared-frag marker is currently lost. That breaks the invariant relied on by later in-place writers. In particular, ESP input checks skb_has_shared_frag() before deciding whet

Technical details

CVSS v3 Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Published
2026-05-23
Last Modified
2026-07-23
MSRC Title
net: skbuff: preserve shared-frag marker during coalescing
Exploit-DB
EDB-52591

Frequently asked questions

What is CVE-2026-46300?

In the Linux kernel, the following vulnerability has been resolved: net: skbuff: preserve shared-frag marker during coalescing skb_try_coalesce() can attach paged frags from @from to @to. If @from has SKBFL_SHARED_FRAG set, the resulting @to skb can contain the same externally-owned or page-cache-backed frags, but the shared-frag marker is currently lost. That breaks the invariant relied on by later in-place writers. In particular, ESP input checks skb_has_shared_frag() before deciding whet

Is CVE-2026-46300 actively exploited?

Active exploitation of CVE-2026-46300 has not been confirmed. The EPSS score is 1.6%, indicating the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2026-46300?

CVE-2026-46300 has a CVSS v3 base score of 7.8 (HIGH severity), with vector string CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H.

Is CVE-2026-46300 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.

No credit card required · 500 free checks/month · Free API key