CVE-2026-80646
Published Aug 28, 2026
Description
In the Linux kernel, the following vulnerability has been resolved: ipv6: guard against possible NULL deref in __in6_dev_stats_get() dev_get_by_index_rcu() could return NULL if the original physical device is unregistered. Found by Sashiko.
Is your site exposed to CVE-2026-80646?
Run a free security scan — no signup, results in seconds.
EPSS — Exploit Prediction
0.0018
Probability of exploitation
0.07%
Percentile rank
EPSS estimates the probability that this vulnerability will be exploited in the wild within the next 30 days. A higher score means more likely to be exploited.
References
Other References
https://git.kernel.org/stable/c/0db1949084e85a72d174a7dea3259b94fe5a9305
https://git.kernel.org/stable/c/1a4adfbeb47a212a64539137411f1ca168474d33
https://git.kernel.org/stable/c/1e3db30a88815bae6e9d5db6f64ac735e615a07e
https://git.kernel.org/stable/c/507541c2a8eeb76c02bd2511958f73a8cfa3e1bc
https://git.kernel.org/stable/c/952426a83ca75cea25c09d58944abafaa3ebd242
https://git.kernel.org/stable/c/a23f2c68c6635e41404f189f8f7ae910738cebdb
https://git.kernel.org/stable/c/e14db43677946bf2095febd294bb3c13ab375ab7
https://git.kernel.org/stable/c/fc920c0659cdea5afd8721c1155a51564859e075
Frequently Asked Questions
What is CVE-2026-80646? +
In the Linux kernel, the following vulnerability has been resolved:
ipv6: guard against possible NULL deref in __in6_dev_stats_get()
dev_get_by_index_rcu() could return NULL if the original physical
device is unregistered.
Found by Sashiko.
How do I check if I'm vulnerable to CVE-2026-80646? +
You can use Secably's free Website Scanner to check your website for known vulnerabilities. For infrastructure scanning, use the Port Scanner to identify exposed services that may be affected. Check the vendor advisories linked above for specific patch and version information.