CVE-2026-63986

Updated on 19 Jul 2026

Severity

Awaiting Analysis

Details

Overview

About vulnerability

In the Linux kernel, the following vulnerability has been resolved:

ethtool: tsinfo: don’t pass ERR_PTR to genlmsg_cancel on prepare failure

The goto err label leads to:

genlmsg_cancel(skb, ehdr); return ret;

If ethnl_tsinfo_prepare_dump() failed, it has not started a genlmsg. There’s nothing to cancel, and passing an error pointer to genlmsg_cancel() would cause a crash.

Details

Affected product:
AlmaLinux 9.2 ESU , TuxCare 9.6 ESU
Affected packages:
kernel @ 5.14.0 (+1 more)

Fixes