Junglewise Threat Intelligence

CVE-2026-46306: Linux Kernel unaligned access exception in flow_dissector via PPPoE PFC frames

CVE-2026-46306 · Severity: info · CVSS 5.3 · Published 2026-06-08

Technologies: Linux Kernel. Vendors: Linux.

Executive brief

A vulnerability in the Linux kernel's network traffic processing could allow a remote attacker to crash certain systems, particularly those using MIPS architecture. By sending specially crafted network packets (PPPoE PFC frames), an attacker can trigger a system exception that leads to a denial of service. This affects systems even if they are not actively using the specific networking protocol involved.

Technical details

A vulnerability exists in the Linux kernel's flow_dissector component due to improper handling of PPPoE Protocol Field Compression (PFC) frames. When a compressed 1-byte protocol field is encountered, the subsequent PPP payload is shifted by one byte, causing a 4-byte misalignment for the network header. On architectures that do not support unaligned access, such as MIPS, this triggers an unaligned access exception (ExcCode 04) during flow dissection (e.g., when RPS is enabled). An attacker can trigger this remotely by sending a PPPoE PFC frame to an Ethernet interface. The fix involves disabling the dissection of PFC frames to maintain alignment and reduce attack surface.

Affected products

  • Linux Linux Kernel Fixed in 6.1.x, 6.6.x, 6.8.x, 6.9.x and other stable branches

Timeline

  • 2026-04-15: patched: Initial patch submitted by Qingfang Deng
  • 2026-06-08: advisory: CVE-2026-46306 published

References

Related threats