Vulnary
← back to the feed
Critical· 9.8

CVE-2024-26782

CVE-2024-26782 is a critical vulnerability in the Linux kernel's MPTCP implementation, causing a double-free memory error during socket dismantling. This can lead to kernel crashes (splatter) and potential security risks. Affected systems include Linux kernel version 6.8.

publishedApr 4, 2024
last modifiedAug 4, 2026
sourcesNVD
severity · cvss
9.8
critical · how bad it is
exploitation · epss
<1%
50th percentile · chance of exploitation in 30 days
(ai-assisted) A model wrote this summary from the official data, so double-check it against the source before you act on it. Read the official advisory →
auto-deletes from the system
counting…on Sep 18, 2026

No official fix yet. If none appears within 45 days of first tracking, this entry is removed automatically.

01

Who is affected

Systems running Linux kernel version 6.8

02

Real-world impact

Could cause kernel crashes (splatter) and potential security risks due to memory corruption.

03

Why this severity

CVSS 9.8 (critical): High risk of exploitation leading to system instability or crashes.

04

What to do about it

no official fix yet
interim mitigations
  • Avoid using Linux kernel version 6.8 until a patched version is available.
  • Apply kernel updates from official sources if a newer version is accessible.

No official fix or mitigation is documented in the sources yet. Monitor the vendor advisory and apply the patch as soon as it is released.

NVD description states the vulnerability has been resolved, but no specific patch or required action is documented in the provided sources.

05

Timeline

  1. Apr 4, 2024 · Apr 4, 2024
    Published
    Disclosed and added to the National Vulnerability Database.
  2. Aug 4, 2026 · 2d ago
    Advisory updated
    The NVD record was last revised.
06

How it’s attacked

Attack vectorNetwork (remote)
Attack complexityLow
Privileges requiredNone
User interactionNone needed
ScopeUnchanged
Confidentiality impactHigh
Integrity impactHigh
Availability impactHigh
07

References & advisories

(ai-assisted) A model wrote this summary from the official data, so double-check it against the source before you act on it. Read the official advisory →