← All Advisories

CVE-2026-97939

Last refreshed2026-10-03

Status: UPDATED  |  Advisory ID: CVE-2026-97939

Key Details

CVECVE-2026-97939
Affected productsLinux Linux

Affected Products, Subsystems & Sectors

VendorProductAffected VersionsPatch Status
LinuxLinux
SubsystemsGeneral OT
SectorsMultiple

What to Know

In the Linux kernel, the following vulnerability has been resolved:

ipmr: account multicast table and route memory

A netadmin in a user+net namespace can create many IPv4 and IPv6

multicast routing tables with MRT_TABLE and MRT6_TABLE. Each unseen

id allocates an mr_table via the shared mr_table_alloc(), links it

into the per-net list, and leaves it until netns teardown. Those

objects were not charged to memcg, so the host unreclaimable slab

grows with the table count.

Account mr_table allocations with GFP_KERNEL_ACCOUNT and mark the

IPv4/IPv6 MFC caches SLAB_ACCOUNT. This matches the established

handling of IP addresses, routes and alternate interface names.

Unresolved MFC entries are still allocated from softIRQ with

GFP_ATOMIC and are not charged. They expire after 10 seconds and are

bounded by the socket receive queue; see commit 0079ad8e8dc3

("ipmr: remove hard code cache_resolve_queue_len limit"). (NVD)

What to Do

Monitor Linux's web page for any future patch releases.

References

SourceReference
NVDhttps://nvd.nist.gov/vuln/detail/CVE-2026-97939
CVEhttps://www.cve.org/CVERecord?id=CVE-2026-97939