Vulnary
← back to the feed
Critical· 9.8official fix available

CVE-2026-81002

CVE-2026-81002 is a critical flaw in the Linux kernel's XDP zero-copy packet handling. When an AF_XDP packet is redirected through a CPU map, packet data can be placed in the wrong part of its memory page, potentially causing memory corruption and a kernel panic.

publishedSep 11, 2026
last modifiedSep 13, 2026
sourcesNVD
severity · cvss
9.8
critical · how bad it is
exploitation · epss
<1%
6th percentile · chance of exploitation in 30 days
(ai-assisted) A model wrote this summary from the official data, so double-check it against the source before you act on it. Read the official advisory →
auto-deletes from the system
counting…on Oct 13, 2026

An official fix is available, so this entry is kept for 30 days and then removed automatically.

01

Who is affected

Linux kernel systems using the affected XDP zero-copy packet-handling path. The supplied data does not list affected products or versions.

02

Real-world impact

The flaw can lead to memory corruption and a kernel panic on affected Linux kernel systems.

03

Why this severity

The vulnerability is rated critical because it can be exploited remotely, requires no prior access or user action, and can affect confidentiality, integrity, and availability.

04

What to do about it

official fix available
recommended steps
  1. 01Install a Linux kernel update containing the fix titled xdp: fix zero-copy frame layout.

The NVD description states that the vulnerability was resolved by the Linux kernel fix titled xdp: fix zero-copy frame layout; it does not identify affected versions or a specific patch.

05

Timeline

  1. Sep 11, 2026 · 2d ago
    Published
    Disclosed and added to the National Vulnerability Database.
  2. Sep 13, 2026 · 5h ago
    Official fix available
    A vendor patch or mitigation now exists — see the remediation steps above.
06

How it’s attacked

Attack vectorNetwork (remote)
Attack complexityLow
Privileges requiredNone
User interactionNone needed
ScopeUnchanged
Confidentiality impactHigh
Integrity impactHigh
Availability impactHigh
07

References & advisories

(ai-assisted) A model wrote this summary from the official data, so double-check it against the source before you act on it. Read the official advisory →