CVE-2026-53366
Linux Linux 취약점
- 대응 우선순위
- 점검
- CVSS
- 7.8
- EPSS
- 0.16% 백분위 5.15% · 2026.07.19 기준
- CISA KEV
- 미등록
- 조치 기한
- -
- 공개일
- 2026.07.16
CVSS 위험도가 높아 영향 여부를 우선 점검할 취약점
In the Linux kernel, the following vulnerability has been resolved: ipv4: account for fraggap on the paged allocation path In __ip_append_data(), when the paged-allocation branch is taken, alloclen and pagedlen are computed as alloclen = fragheaderlen + transhdrlen; pagedlen = datalen - transhdrlen; datalen already includes fraggap, but the fraggap bytes carried over from the previous skb are copied into the new skb's linear area at offset transhdrlen by the subsequent skb_copy_and_csum_bits(). The linear area is therefore undersized by fraggap bytes while pagedlen is overstated by the same...
제품 Linux
영향 버전 Linux >= 8eb77cc73977d88787b37c92831b1c242e035396 < ce494707a9c07f27c219ca67f3e138061f53d9b3, >= 8eb77cc73977d88787b37c92831b1c242e035396 < a9c24eda24bd15f432e37824e6fc440977cb241c, >= 8eb77cc73977d88787b37c92831b1c242e035396 < 77798d7be6ef71e72fb6fc8a2901bf74ebc9706f, >= 8eb77cc73977d88787b37c92831b1c242e035396 < c04d9ece23deb9e26c19f9ca215e98b3295aa1bb, >= 8eb77cc73977d88787b37c92831b1c242e035396 < eca856950f7cb1a221e02b99d758409f2c5cec42, >= 6.0
수정 버전 Linux · 수정 버전은 공급사 공식자료 확인 필요
영향 여부, 우선 대응, 정식 해결과 결과 확인 절차를 요약합니다.
Linux의 현재 전체 버전이 공식 영향 범위(Linux >= 8eb77cc73977d88787b37c92831b1c242e035396 < ce494707a9c07f27c219ca67f3e138061f53d9b3, >= 8eb77cc73977d88787b37c92831b1c242e035396 < a9c24eda24bd15f432e37824e6fc440977cb241c, >= 8eb77cc73977d88787b37c92831b1c242e035396 < 77798d7be6ef71e72fb6fc8a2901bf74ebc9706f, >= 8eb77cc73977d88787b37c92831b1c242e035396 < c04d9ece23deb9e26c19f9ca215e98b3295aa1bb, >= 8eb77cc73977d88787b37c92831b1c242e035396 < eca856950f7cb1a221e02b99d758409f2c5cec42, >= 6.0)에 포함되는지 확인합니다. OS를 선택하면 해당 OS의 제품·패키지·KB·APAR 확인 명령만 표시됩니다.
공급사 공식 보안 권고에서 영향 버전, 수정 버전, 패치 번호와 공식 완화조치를 먼저 확인해야 합니다.
패치 후 같은 명령으로 전체 버전을 다시 확인해 Linux · 수정 버전은 공급사 공식자료 확인 필요 기준을 충족하는지 확인합니다. 이어서 유형 미확정 관련 오류·공격 흔적이 새로 발생하지 않는지 확인합니다.
CVSS 벡터 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE 미등록
EPSS 데이터 기준일 2026.07.19