{"id":"CVE-2026-97417","summary":"netfilter: nf_conntrack: use get_unaligned_be32() in tcp_sack()","details":"In the Linux kernel, the following vulnerability has been resolved:\n\nnetfilter: nf_conntrack: use get_unaligned_be32() in tcp_sack()\n\nThe timestamp-only fast path dereferences the option stream as\n*(__be32 *)ptr, which assumes 4-byte alignment that the TCP option\nstream does not guarantee. Use get_unaligned_be32() instead, which\nreads the value safely and already returns host byte order, so the\nhtonl() on the comparison constant can be dropped.\n\nThis matches the existing get_unaligned_be32() use later in the same\nfunction.","modified":"2026-10-05T02:30:52.354970678Z","published":"2026-09-24T16:03:27.069Z","database_specific":{"cna_assigner":"Linux","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/97xxx/CVE-2026-97417.json"},"references":[{"type":"WEB","url":"https://git.kernel.org/stable/c/0d5ad732e4fdc569eb85861115e8f7b4c2c67852"},{"type":"WEB","url":"https://git.kernel.org/stable/c/4abc1af7ac209c066f4e5dd75cdd56876e5829a9"},{"type":"WEB","url":"https://git.kernel.org/stable/c/55bcc3376cd7b18954cc9814da697504fdaf12bf"},{"type":"WEB","url":"https://git.kernel.org/stable/c/740ad3d17a281f7764dda4dbeb37cea52e2e31ae"},{"type":"WEB","url":"https://git.kernel.org/stable/c/7ecfa46a536578a7ed335ddf31a854127268c27c"},{"type":"WEB","url":"https://git.kernel.org/stable/c/a0523267de2523522b0f70972dd1ffa22ec6176c"},{"type":"WEB","url":"https://git.kernel.org/stable/c/d3bf9eae486490832bd08fd62ab0ac601f346bd4"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/97xxx/CVE-2026-97417.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-97417"},{"type":"PACKAGE","url":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git","events":[{"introduced":"bb9fc37358ffa9de1cc2b2b6f1a559b926ef50d9"},{"fixed":"740ad3d17a281f7764dda4dbeb37cea52e2e31ae"},{"fixed":"a0523267de2523522b0f70972dd1ffa22ec6176c"},{"fixed":"55bcc3376cd7b18954cc9814da697504fdaf12bf"},{"fixed":"0d5ad732e4fdc569eb85861115e8f7b4c2c67852"},{"fixed":"7ecfa46a536578a7ed335ddf31a854127268c27c"},{"fixed":"4abc1af7ac209c066f4e5dd75cdd56876e5829a9"},{"fixed":"d3bf9eae486490832bd08fd62ab0ac601f346bd4"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-97417.json"}},{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"3.1.0"},{"fixed":"5.10.271"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.11.0"},{"fixed":"5.15.222"}]},{"type":"ECOSYSTEM","events":[{"introduced":"5.16.0"},{"fixed":"6.1.189"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.2.0"},{"fixed":"6.6.158"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.7.0"},{"fixed":"6.12.111"}]},{"type":"ECOSYSTEM","events":[{"introduced":"6.13.0"},{"fixed":"6.18.53"}]}],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2026-97417.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}