Home

Description

In the Linux kernel, the following vulnerability has been resolved: net/tcp-ao: Fix MAC comparison to be constant-time To prevent timing attacks, MACs need to be compared in constant time. Use the appropriate helper function for this.

PUBLISHED Reserved 2026-05-01 | Published 2026-05-08 | Updated 2026-05-08 | Assigner Linux

Product status

Default status
unaffected

0a3a809089eb1d4a0a2fd0c16b520d603988c859 (git) before 8be6ed64966da48b6c4726918f106c18742a5125
affected

0a3a809089eb1d4a0a2fd0c16b520d603988c859 (git) before a269cbdc442f8658bca35383e34b9d0b0ff95a1c
affected

0a3a809089eb1d4a0a2fd0c16b520d603988c859 (git) before 080b0e210088296dd50d6637c06c1db14246adfe
affected

0a3a809089eb1d4a0a2fd0c16b520d603988c859 (git) before 67edfec516d30d3e62925c397be4a1e5185802fc
affected

Default status
affected

6.7
affected

Any version before 6.7
unaffected

6.12.78 (semver)
unaffected

6.18.19 (semver)
unaffected

6.19.9 (semver)
unaffected

7.0 (original_commit_for_fix)
unaffected

References

git.kernel.org/...c/8be6ed64966da48b6c4726918f106c18742a5125

git.kernel.org/...c/a269cbdc442f8658bca35383e34b9d0b0ff95a1c

git.kernel.org/...c/080b0e210088296dd50d6637c06c1db14246adfe

git.kernel.org/...c/67edfec516d30d3e62925c397be4a1e5185802fc

cve.org (CVE-2026-43384)

nvd.nist.gov (CVE-2026-43384)

Download JSON