VYPR
Medium severity5.5NVD Advisory· Published Jun 24, 2026· Updated Jul 14, 2026

CVE-2026-53001

CVE-2026-53001

Description

In the Linux kernel, the following vulnerability has been resolved:

netfilter: xtables: restrict several matches to inet family

This is a partial revert of:

commit ab4f21e6fb1c ("netfilter: xtables: use NFPROTO_UNSPEC in more extensions")

to allow ipv4 and ipv6 only.

  • xt_mac
  • xt_owner
  • xt_physdev

These extensions are not used by ebtables in userspace.

Moreover, xt_realm is only for ipv4, since dst->tclassid is ipv4 specific.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • osv-coords
    Range: >= 2.6.28, < 5.10.258
  • Linux/Kernelllm-fuzzy2 versions
    (expand)+ 1 more
    • (no CPE)
    • cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=2.6.28,<5.10.258

Patches

Vulnerability mechanics

References

8

News mentions

0

No linked articles in our index yet.