CVE-2026-90062

Sicherheitsluecke -- CVE-2026-90062

mediumEPSS 0.2%

Description

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: move hardware offload step after building the chain blob Allocate the chain blob before the ruleset offload to reduce chances of entering an inconsistent state where the offloaded ruleset in the nic and the software ruleset differ.

Affected operating systems

  • linux

    debian / linuxtrixie

Metrics

5.5
Source: cna-v3
6.0 %
Low — this CVE sits in the lower 10% of all CVEs scored today.
Show all metrics
Severity
medium
no public PoC known
0.2 %
Low — model estimates < 1% exploitation likelihood.
Published
2026-09-17 16:05 UTC

References & sources

Reanalysis & status changes

Chronological NVD audit events for this CVE — reanalyses, CVSS updates, CPE diffs.

  1. CVE Modified2026-09-18 18:17 UTC· 416baaa9-dc9f-4396-8d5f-8c081fb06d67
    • CVSS V3.1: AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
  2. New CVE Received2026-09-17 17:16 UTC· 416baaa9-dc9f-4396-8d5f-8c081fb06d67
    • Description: In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: move hardware offload step after building the chain blob Allocate the chain blob before the ruleset offload to reduce chances of entering an inconsistent state where the offloaded ruleset in the nic and the software ruleset differ.
    • Affected: New affected value received. <a href="https://github.com/CVEProject/cvelistV5/blob/main/cves/2026/90xxx/CVE-2026-90062.json">CVE-2026-90062</a>
    • Reference: https://git.kernel.org/stable/c/309acbab74e46114246bf4346c9b60b3d8cb4fcd
    • Reference: https://git.kernel.org/stable/c/52febaf1d311d6ede312b2ec7692a309714f9554