Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2026-46331

43
FAUCET Score

In the Linux kernel, the following vulnerability has been resolved: net/sched: fix pedit partial COW leading to page cache corruption tcf_pedit_act() computes the COW range for skb_ensure_writable() once before the key loop using tcfp_off_max_hint, but the hint does not account for the runtime header offset added by typed keys. This can leave part of the write region un-COW'd. Fix by moving skb_ensure_writable() inside the per-key loop where the actual write offset is known, and add overflow checking on the offset arithmetic. For negative offsets (e.g. Ethernet header edits at ingress), use skb_cow() to COW the headroom instead. Guard offset_valid() against INT_MIN, where negation is undefined.

First published: Jun 16, 2026Last modified: Jul 4, 2026

Impacted Technologies

VendorProductVersion(s)CPE
>= 4.19.244, < 4.20CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.4.195, < 5.5CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.10.117, < 5.11CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.15.41, < 5.16CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
>= 5.17.9, < 5.18CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.8HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.53%
Probability of exploitation in next 30 days
EPSS Percentile
41.4%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0053 is in the 81st percentile among its peer group of 17,070 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Advisories (1)

microsoft2026-Jun/CVE-2026-46331Important

net/sched: fix pedit partial COW leading to page cache corruption

Jun 9, 2026

References

access.redhat.com / errata/RHSA-2026:27288
Third Party Advisory
access.redhat.com / errata/RHSA-2026:27353
Third Party Advisory
access.redhat.com / errata/RHSA-2026:27354
Third Party Advisory
access.redhat.com / errata/RHSA-2026:27355
Third Party Advisory
access.redhat.com / errata/RHSA-2026:27704
Third Party Advisory
access.redhat.com / errata/RHSA-2026:27705
Third Party Advisory
access.redhat.com / errata/RHSA-2026:27706
Third Party Advisory
access.redhat.com / errata/RHSA-2026:27707
Third Party Advisory
access.redhat.com / errata/RHSA-2026:27708
Third Party Advisory
access.redhat.com / errata/RHSA-2026:27709
Third Party Advisory
access.redhat.com / errata/RHSA-2026:27713
Third Party Advisory
access.redhat.com / errata/RHSA-2026:27731
Third Party Advisory
access.redhat.com / errata/RHSA-2026:27789
Third Party Advisory
access.redhat.com / errata/RHSA-2026:28887
Third Party Advisory
access.redhat.com / errata/RHSA-2026:28962
Issue Tracking
access.redhat.com / errata/RHSA-2026:29080
Third Party Advisory
access.redhat.com / errata/RHSA-2026:29794
Third Party Advisory
access.redhat.com / errata/RHSA-2026:29799
Third Party Advisory
access.redhat.com / errata/RHSA-2026:29833
Third Party Advisory
access.redhat.com / errata/RHSA-2026:29856
Third Party Advisory
access.redhat.com / errata/RHSA-2026:29863
Third Party Advisory
access.redhat.com / errata/RHSA-2026:33219
Third Party Advisory
access.redhat.com / errata/RHSA-2026:33220
Third Party Advisory
access.redhat.com / errata/RHSA-2026:33221
Third Party Advisory
access.redhat.com / errata/RHSA-2026:33222
Third Party Advisory
access.redhat.com / errata/RHSA-2026:33223
Third Party Advisory
access.redhat.com / errata/RHSA-2026:33224
Third Party Advisory
access.redhat.com / errata/RHSA-2026:33225
Third Party Advisory
access.redhat.com / errata/RHSA-2026:33666
Third Party Advisory
access.redhat.com / errata/RHSA-2026:34048
access.redhat.com / errata/RHSA-2026:34098
access.redhat.com / errata/RHSA-2026:40021
access.redhat.com / security/cve/CVE-2026-46331
Third Party Advisory
bugzilla.redhat.com / show_bug.cgi
Third Party Advisory
security.access.redhat.com / data/csaf/v2/vex/2026/cve-2026-46331.json
Third Party Advisory
github.com / sgkdev/packet_edit_meme/tree/main
Third Party Advisory
git.kernel.org / stable/c/2bec122b9fb91507a758ab5e3e5c4fbe7cb3f61b
Patch
git.kernel.org / stable/c/3dee9d0c198faeb95d052c1b94c2958751a28512
Patch
git.kernel.org / stable/c/544d857b42a1734b923040e13aa61a6fd4746cf2
Patch
git.kernel.org / stable/c/899ee91156e57784090c5565e4f31bd7dbffbc5a
Patch
git.kernel.org / stable/c/a071e057518decc5e3bec89855758f5f8786f2c5
Patch
git.kernel.org / stable/c/b198ed4e52580a7238c7c7082f03906f8b310313
Patch
git.kernel.org / stable/c/b685d6ef6f07a3b5ce814565a25f39f2157538a5
Patch
git.kernel.org / stable/c/d5d01d35a5a7d36f7cb679b67d9cbdd5205672dc
Patch