CVE-2026-97522 PUBLISHED

mptcp: fix bad accounting in __mptcp_subflow_push_pending()

Assigner: Linux
Reserved: 24.09.2026 Published: 25.09.2026 Updated: 25.09.2026

In the Linux kernel, the following vulnerability has been resolved:

mptcp: fix bad accounting in __mptcp_subflow_push_pending()

If __subflow_push_pending() errors out we should avoid updating the copied byte counters, to avoid mismatch push call later on.

Product Status

Vendor Linux
Product Linux
Versions Default: unaffected
  • affected from 0fa1b3783a17d75a4aa1651a18ede041ffca5750 to 9781fa35d9f7a87a83115acd3a88bc9ce35b5407 (excl.)
  • affected from 0fa1b3783a17d75a4aa1651a18ede041ffca5750 to a0a64525f3414268ed4b1945a1dc690aa974dd4f (excl.)
  • affected from 0fa1b3783a17d75a4aa1651a18ede041ffca5750 to dc054821e639a2e14f1419436612db70b6af45fc (excl.)
  • affected from 0fa1b3783a17d75a4aa1651a18ede041ffca5750 to f3ef03357396d4b147d8e76c75fb612c2f264ffc (excl.)
Vendor Linux
Product Linux
Versions Default: affected
  • Version 6.6 is affected
  • unaffected from 0 to 6.6 (excl.)
  • unaffected from 6.12.111 to 6.12.* (incl.)
  • unaffected from 6.18.53 to 6.18.* (incl.)
  • unaffected from 7.2.7 to 7.2.* (incl.)
  • unaffected from 7.3-rc4 to * (incl.)

References