CVE-2026-52928 Details
Description
In the Linux kernel, the following vulnerability has been resolved: af_unix: Reject SIOCATMARK on non-stream sockets SIOCATMARK reports whether the receive queue is at the urgent mark for MSG_OOB. In AF_UNIX, MSG_OOB is supported only for SOCK_STREAM sockets. SOCK_DGRAM and SOCK_SEQPACKET reject MSG_OOB in sendmsg() and recvmsg(), so they should not support SIOCATMARK either. Return -EOPNOTSUPP for non-stream sockets before checking the receive queue.
A vulnerability exists in the Linux kernel's handling of the SIOCATMARK ioctl for AF_UNIX sockets. The issue arises because SIOCATMARK is incorrectly supported on non-stream socket types, such as SOCK_DGRAM and SOCK_SEQPACKET, which do not handle out-of-band data as required. This vulnerability affects several versions of the Linux kernel.
Users can upgrade to the latest stable version of the Linux kernel, where this vulnerability has been addressed. Instructions for downloading the patched kernel can be found on the official Linux kernel website.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://git.kernel.org/stable/c/3147ddf5a41c20c45c2eb69e00b62f10f822056a | kernel.org | Patch |
| https://git.kernel.org/stable/c/645b1ed3259af38b7814242a420bc2081bdd1eb6 | kernel.org | Patch |
| https://git.kernel.org/stable/c/b741c9c6ef59f17c1f104ddf1217ef77f79ed29b | kernel.org | Patch |
| https://git.kernel.org/stable/c/c34c41446acf6c0d13b5b06c809be11e0f7f2729 | kernel.org | Patch |
| https://git.kernel.org/stable/c/d119775f2bad827edc28071c061fdd4a91f889a5 | kernel.org | Patch |
| https://git.kernel.org/stable/c/ec123873fdc83e7244c8ed6d17b8f8ea6c416a67 | kernel.org | Patch |
| https://git.kernel.org/stable/c/f085971de6d6b8ef946a5e0bcd73ff24509a0f85 | kernel.org | Patch |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| NVD-CWE-noinfo | Insufficient Information to Classify Weakness | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| linux linux kernel | >= 5.15, < 5.15.211 >= 5.16, < 6.1.177 >= 6.2, < 6.6.144 >= 6.7, < 6.12.88 >= 6.13, < 6.18.30 >= 6.19, < 7.0.7 7.1 rc1 7.1 rc2 |
CPE
Remediation
| |
Change History
3 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jul 8, 2026 | Initial Analysis | [email protected] |
| Jul 4, 2026 | CVE Modified | kernel.org |
| Jun 24, 2026 | New CVE Received | kernel.org |