Review reviewHigh

CVE-2026-43030

Linux Linux, SIMATIC S7-1500 CPU 1518-4 PN/DP MFP, SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix regsafe() for pointers to packet In case rold->reg->range == BEYOND_PKT_END && rcur->reg->range == N regsafe() may return true which may lead to current state with valid packet range not being explored. Fix the bug.

CVSS
7.8
EPSS
0.14%
3.39% percentile
CISA KEV
Not listed
Published
2026.05.02
PRIORITY ASSESSMENT

Review review

The CVSS severity warrants an early asset and exposure review.

Known exploitationNot established by KEV
Exploit probability0.14%
Technical severityCVSS 7.8

Vulnerability overview

In the Linux kernel, the following vulnerability has been resolved: bpf: Fix regsafe() for pointers to packet In case rold->reg->range == BEYOND_PKT_END && rcur->reg->range == N regsafe() may return true which may lead to current state with valid packet range not being explored. Fix the bug.

Affected product and versions

Product
Linux Linux, SIMATIC S7-1500 CPU 1518-4 PN/DP MFP, SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP
Affected versions
>= 95b6ec733752b31bfd166c4609d2c1b5cdde9b47 < b52f6d0ef7b308f9d05bbddb78749852f28e8e40, >= 6d94e741a8ff818e5518da8257f5ca0aaed1f269 < 37db6b9726d0bcf91cbdf9d63b558c50da49f968, >= 6d94e741a8ff818e5518da8257f5ca0aaed1f269 < 015a74476dc1ab6923d89f1ee009aaf43faa7185, >= 6d94e741a8ff818e5518da8257f5ca0aaed1f269 < b99d82706bd1511bb875e3de7154698fd9215c99, >= 6d94e741a8ff818e5518da8257f5ca0aaed1f269 < 7241da033fdc507b920e092dab1f97b945cb0370, >= 6d94e741a8ff818e5518da8257f5ca0aaed1f269 < 8aebe18069394f4a79d2d82080a0f806da449996, >= 6d94e741a8ff818e5518da8257f5ca0aaed1f269 < ca995b1462ec6db1e869100ba1fb7356bd3f22f0, >= 6d94e741a8ff818e5518da8257f5ca0aaed1f269 < a8502a79e832b861e99218cbd2d8f4312d62e225, >= 5.10.155 < 5.10.253, >= 5.11, >= V3.1.6, >= V3.1.5, >= 5.11 < 5.15.203, >= 5.16 < 6.1.168, >= 6.2 < 6.6.134, >= 6.7 < 6.12.81, >= 6.13 < 6.18.22, >= 6.19 < 6.19.12, 7.0
Fixed versions
5.10.253, 5.15.203, 6.1.168, 6.6.134, 6.12.81, 6.18.22, 6.19.12

Recommended response sequence

Confirm exposure before applying a vendor-supported change.

Full remediation guide
  1. 1
    Identify

    Confirm that Linux Linux, SIMATIC S7-1500 CPU 1518-4 PN/DP MFP, SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP and an affected version are present.

  2. 2
    Prioritize

    Combine exploitation signals with asset exposure and business criticality.

  3. 3
    Remediate

    Follow the vendor advisory or supported update path and preserve rollback options.

  4. 4
    Verify

    Recheck the version, service health, access paths, and relevant logs.

Technical data

CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CWE
Not available
CVE-2026-43030 — Linux Linux, SIMATIC S7-1500 CPU 1518-4 PN/DP MFP, SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP | SECUFOCUS NOW