Review reviewHigh

CVE-2026-43028

Linux Linux, SIMATIC S7-1500 CPU 1518-4 PN/DP MFP, SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP

In the Linux kernel, the following vulnerability has been resolved: netfilter: x_tables: ensure names are nul-terminated Reject names that lack a \0 character before feeding them to functions that expect c-strings. Fixes tag is the most recent commit that needs this change.

CVSS
7.1
EPSS
0.13%
3.12% percentile
CISA KEV
Not listed
Published
2026.05.02
PRIORITY ASSESSMENT

Review review

The CVSS severity warrants an early asset and exposure review.

Known exploitationNot established by KEV
Exploit probability0.13%
Technical severityCVSS 7.1

Vulnerability overview

In the Linux kernel, the following vulnerability has been resolved: netfilter: x_tables: ensure names are nul-terminated Reject names that lack a \0 character before feeding them to functions that expect c-strings. Fixes tag is the most recent commit that needs this change.

Affected product and versions

Product
Linux Linux, SIMATIC S7-1500 CPU 1518-4 PN/DP MFP, SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP
Affected versions
>= c38c4597e4bf3e99860eac98211748e1ecb0e139 < bcac50ea0a29d430eedc5ac87b215393b567baa9, >= c38c4597e4bf3e99860eac98211748e1ecb0e139 < ea01c1b219f5a11c66918abaa6f052e5a74041d6, >= c38c4597e4bf3e99860eac98211748e1ecb0e139 < aa6cd4a8863391e0a64f62d8922cb0af732a2cf2, >= c38c4597e4bf3e99860eac98211748e1ecb0e139 < c2d4a3abb15ca14716c6d8b9ffcbcd7c63626af4, >= c38c4597e4bf3e99860eac98211748e1ecb0e139 < 673bbd36cba21d10a10f0932f479df7468e26fbb, >= c38c4597e4bf3e99860eac98211748e1ecb0e139 < f419bdc205894750f4d3ec042bc87a1b9cde1351, >= c38c4597e4bf3e99860eac98211748e1ecb0e139 < 73124608172890306b85f2206d8b3cac20e324f1, >= c38c4597e4bf3e99860eac98211748e1ecb0e139 < a958a4f90ddd7de0800b33ca9d7b886b7d40f74e, >= 4.5, >= V3.1.6, >= V3.1.5, >= 4.5 < 5.10.253, >= 5.11 < 5.15.203, >= 5.16 < 6.1.168, >= 6.2 < 6.6.134, >= 6.7 < 6.12.81, >= 6.13 < 6.18.22, >= 6.19 < 6.19.12, 7.0
Fixed versions
5.10.253, 5.15.203, 6.1.168, 6.6.134, 6.12.81, 6.18.22, 6.19.12

Recommended response sequence

Confirm exposure before applying a vendor-supported change.

Full remediation guide
  1. 1
    Identify

    Confirm that Linux Linux, SIMATIC S7-1500 CPU 1518-4 PN/DP MFP, SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP and an affected version are present.

  2. 2
    Prioritize

    Combine exploitation signals with asset exposure and business criticality.

  3. 3
    Remediate

    Follow the vendor advisory or supported update path and preserve rollback options.

  4. 4
    Verify

    Recheck the version, service health, access paths, and relevant logs.

Technical data

CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
CWE
Not available