CVE-2026-43037 | Linux Kernel up to 6.19.11 ip6_tunnel ip4ip6_err cb[] stack-based overflow
A vulnerability was found in Linux Kernel up to 6.19.11. It has been declared as critical. Affected by this issue is the function ip4ip6_err of the component ip6_tunnel. The manipulation of the argument cb[] results in stack-based buffer overflow.
This vulnerability is reported as CVE-2026-43037. The attacker must have access to the local network to execute the attack. No exploit exists.
It is recommended to upgrade the affected component.