Vulnerability Description
In the Linux kernel, the following vulnerability has been resolved: af_unix: Reject SIOCATMARK on non-stream sockets SIOCATMARK reports whether the receive queue is at the urgent mark for MSG_OOB. In AF_UNIX, MSG_OOB is supported only for SOCK_STREAM sockets. SOCK_DGRAM and SOCK_SEQPACKET reject MSG_OOB in sendmsg() and recvmsg(), so they should not support SIOCATMARK either. Return -EOPNOTSUPP for non-stream sockets before checking the receive queue.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | >= 5.15, < 5.15.211 |
References
- https://git.kernel.org/stable/c/3147ddf5a41c20c45c2eb69e00b62f10f822056aPatch
- https://git.kernel.org/stable/c/645b1ed3259af38b7814242a420bc2081bdd1eb6Patch
- https://git.kernel.org/stable/c/b741c9c6ef59f17c1f104ddf1217ef77f79ed29bPatch
- https://git.kernel.org/stable/c/c34c41446acf6c0d13b5b06c809be11e0f7f2729Patch
- https://git.kernel.org/stable/c/d119775f2bad827edc28071c061fdd4a91f889a5Patch
- https://git.kernel.org/stable/c/ec123873fdc83e7244c8ed6d17b8f8ea6c416a67Patch
- https://git.kernel.org/stable/c/f085971de6d6b8ef946a5e0bcd73ff24509a0f85Patch
FAQ
What is CVE-2026-52928?
CVE-2026-52928 is a vulnerability with a CVSS score of 5.5 (MEDIUM). In the Linux kernel, the following vulnerability has been resolved: af_unix: Reject SIOCATMARK on non-stream sockets SIOCATMARK reports whether the receive queue is at the urgent mark for MSG_OOB. ...
How severe is CVE-2026-52928?
CVE-2026-52928 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-52928?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.