Junglewise Threat Intelligence

CVE-2026-47337: Ubuntu Linux NULL pointer dereference in socket mediation

CVE-2026-47337 · Severity: low · CVSS 3.3 · Published 2026-05-28

Executive brief

A vulnerability exists in specific versions of the Ubuntu Linux kernel that could allow a local user to crash the system. The issue occurs during the processing of certain network socket communications. While it does not allow for data theft, it can lead to a 'kernel oops' or system instability, impacting the availability of the affected machine.

Technical details

A NULL pointer dereference (CWE-476) exists in the Ubuntu-specific 'SAUCE' patches for the Linux kernel versions 6.8, 6.17, and 7.0. The vulnerability is located within the mediation logic for AF_INET and AF_INET6 network sockets. An unprivileged local attacker can trigger this flaw to cause a kernel oops, leading to a denial-of-service (DoS) condition. The issue is addressed in the Ubuntu kernel source tree via specific commits to the 'noble' branch. Exploitation does not require user interaction or elevated privileges but is limited to local access.

Affected products

  • Ubuntu Linux Kernel 6.8, 6.17, 7.0

Timeline

  • 2026-05-28: disclosed
  • 2026-05-28: advisory

References