Skip to main content
UNKNOWN CISA KEV

CVE-2026-53362

CVSS v3

Unknown

EPSS Score

0.2 %

exploit probability

CISA KEV

Yes

known exploited

Exploitation

SSVC status

Description

In the Linux kernel, the following vulnerability has been resolved: ipv6: account for fraggap on the paged allocation path In __ip6_append_data(), when the paged-allocation branch is taken (MSG_MORE / NETIF_F_SG / large fraglen), alloclen and pagedlen are computed as alloclen = fragheaderlen + transhdrlen; pagedlen = datalen - transhdrlen; datalen already includes fraggap (datalen = length + fraggap). When fraggap is non-zero, this is not the first skb and transhdrlen is zero. The fraggap

CISA Known Exploited Vulnerability

Date Added
2026-08-27
Patch Due Date
2026-08-30
Ransomware Use
Unknown

Technical details

Published
2026-07-04
Last Modified
2026-07-04

Frequently asked questions

What is CVE-2026-53362?

In the Linux kernel, the following vulnerability has been resolved: ipv6: account for fraggap on the paged allocation path In __ip6_append_data(), when the paged-allocation branch is taken (MSG_MORE / NETIF_F_SG / large fraglen), alloclen and pagedlen are computed as alloclen = fragheaderlen + transhdrlen; pagedlen = datalen - transhdrlen; datalen already includes fraggap (datalen = length + fraggap). When fraggap is non-zero, this is not the first skb and transhdrlen is zero. The fraggap

Is CVE-2026-53362 actively exploited?

Yes. CVE-2026-53362 is on the CISA Known Exploited Vulnerabilities (KEV) catalog, meaning it has been confirmed as actively exploited in the wild. CISA requires federal agencies to patch by 2026-08-30.

What is the CVSS score for CVE-2026-53362?

A CVSS score has not been assigned to CVE-2026-53362 yet.

Is CVE-2026-53362 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.

No credit card required · 500 free checks/month · Free API key