Medium severity5.5NVD Advisory· Published Jul 19, 2026· Updated Aug 11, 2026
CVE-2026-64090
CVE-2026-64090
Description
In the Linux kernel, the following vulnerability has been resolved:
batman-adv: tt: avoid empty VLAN responses
The commit 16116dac2339 ("batman-adv: prevent TT request storms by not sending inconsistent TT TLVLs") added checks to the local (direct) TT response code. But the response can also be done indirectly by another node using the global TT state. To avoid such inconsistency states reported in the original fix, also avoid sending empty VLANs for replies from the global TT state.
Affected products
7cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*range: >=3.13,<5.10.259
- cpe:2.3:o:linux:linux_kernel:7.1:rc1:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.1:rc2:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.1:rc3:*:*:*:*:*:*
- cpe:2.3:o:linux:linux_kernel:7.1:rc4:*:*:*:*:*:*
- (no CPE)
Patches
Vulnerability mechanics
References
8- git.kernel.org/stable/c/1f467d9a095211d3f77e8ff1bee90e73ffe01c64nvdPatch
- git.kernel.org/stable/c/99f17d1cdb371cbd037975239b321f346d38f6d2nvdPatch
- git.kernel.org/stable/c/9a02c8fc963ddeecb5d8788be0740c1869fc54b7nvdPatch
- git.kernel.org/stable/c/ab26e346322648f5c39de017d9723c9256284fcenvdPatch
- git.kernel.org/stable/c/b93ca6012712ecab2b551e120d7c95038d6a89e5nvdPatch
- git.kernel.org/stable/c/cfb30645280a2131e46cbd1b9a38cfd3ff893f12nvdPatch
- git.kernel.org/stable/c/ea4f757641430bcc8322772e161453c4db5ecb64nvdPatch
- git.kernel.org/stable/c/fa1bd704940b5bcbc32c0b28db9167405c8ee5e0nvdPatch
News mentions
0No linked articles in our index yet.