CVE-2026-68379 is a vulnerability in Linux Kernel
Published on August 10, 2026
tcp: fix TIME_WAIT socket reference leak on PSP policy failure
In the Linux kernel, the following vulnerability has been resolved:
tcp: fix TIME_WAIT socket reference leak on PSP policy failure
Release the TIME_WAIT socket reference and jump to discard_it
upon PSP policy failure in both IPv4 and IPv6 receive paths.
This prevents a memory leak of tcp_tw_bucket structures.
Products Associated with CVE-2026-68379
Want to know whenever a new CVE is published for Linux Kernel? stack.watch will email you.
Affected Versions
Linux:- Version 659a2899a57da59f433182eba571881884d6323e and below e666af5dcc905ba694745963174d232deb478c55 is affected.
- Version 659a2899a57da59f433182eba571881884d6323e and below 374742a961becbbfc7fbfd1382d978a05e492741 is affected.
- Version 659a2899a57da59f433182eba571881884d6323e and below 2c1931a81122c3cdc4c89448fe0442c69e21c0d5 is affected.
- Version 6.18 is affected.
- Before 6.18 is unaffected.
- Version 6.18.42, <= 6.18.* is unaffected.
- Version 7.1.6, <= 7.1.* is unaffected.
- Version 7.2-rc4, <= * is unaffected.